Description
In Materialize through 1.0.0, XSS is possible via the Toast feature.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0435 | In Materialize through 1.0.0, XSS is possible via the Toast feature. |
Github GHSA |
GHSA-rg3q-jxmp-pvjj | Materialize-css vulnerable to Improper Neutralization of Input During Web Page Generation |
References
| Link | Providers |
|---|---|
| https://github.com/Dogfalo/materialize/issues/6286 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:40:15.823Z
Reserved: 2019-04-08T00:00:00.000Z
Link: CVE-2019-11004
No data.
Status : Modified
Published: 2019-04-08T18:29:00.413
Modified: 2024-11-21T04:20:20.247
Link: CVE-2019-11004
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA