Vulnerability CVE-2022-0177


Published: 2022-01-24

Description:
Cross-site Scripting (XSS) - DOM in GitHub repository mrdoob/three.js prior to 0.137.0.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://github.com/mrdoob/three.js/commit/0c31bc605e21965aad8a6479bb1969351773f76d
https://huntr.dev/bounties/16901080-99b4-4fb5-8c5b-931bfbf33cba

Copyright 2024, cxsecurity.com

 

Back to Top