Filtered by vendor Angularjs Subscriptions
Filtered by product Angularjs Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-4690 1 Angularjs 1 Angularjs 2025-08-21 4.3 Medium
A regular expression used by AngularJS'  linky https://docs.angularjs.org/api/ngSanitize/filter/linky  filter to detect URLs in input text is vulnerable to super-linear runtime due to backtracking. With a large carefully-crafted input, this can cause a Regular expression Denial of Service (ReDoS) https://owasp.org/www-community/attacks/Regular_expression_Denial_of_Service_-_ReDoS  attack on the application. This issue affects all versions of AngularJS. Note: The AngularJS project is End-of-Life and will not receive any updates to address this issue. For more information see here https://docs.angularjs.org/misc/version-support-status .
CVE-2017-16009 2 Ag-grid, Angularjs 2 Ag-grid, Angularjs 2024-11-21 6.1 Medium
ag-grid is an advanced data grid that is library agnostic. ag-grid is vulnerable to Cross-site Scripting (XSS) via Angular Expressions, if AngularJS is used in combination with ag-grid.