CVE-2013-7452: XSS
Published Jan 23, 2017
·Updated
The validator module before 1.1.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter via a crafted javascript URI.
Affected Software
1 affected component
Nodejs Node.js<=1.0.4
Event History
Jan 23, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-7452?
CVE-2013-7452 has a medium severity level with a score of 6.1.
2
How do I fix CVE-2013-7452?
To fix CVE-2013-7452, update the validator module to version 1.1.0 or later.
3
What issue does CVE-2013-7452 address?
CVE-2013-7452 addresses a vulnerability that allows remote attackers to bypass the XSS filter in the validator module.
4
Which versions of Node.js are affected by CVE-2013-7452?
CVE-2013-7452 affects versions of Node.js before 1.0.4 of the validator module.
5
What type of vulnerability is CVE-2013-7452?
CVE-2013-7452 is a cross-site scripting (XSS) vulnerability.