MidnightBSD

Advisories for emberjs

CVE-2013-4170 LOW

In general, Ember.js escapes or strips any user-supplied content before inserting it in strings that will be sent to innerHTML. However, the `tagName` property of an `Ember.View` was inserted into such a string without being sanitized. This means that if an application assigns a view's `tagName` to user-supplied data, a specially-crafted payload could execute arbitrary JavaScript in the context of the current domain ("XSS"). This vulnerability only affects applications that assign or bind user-provided content to `tagName`.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 6.1 MEDIUM CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N 2.8 2.7

CVSS 2.0

Severity: LOW

Problem Type: CWE-79,CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js *
emberjs ember.js 1.0.0
CVE-2014-0013 LOW

Ember.js 1.0.x before 1.0.1, 1.1.x before 1.1.3, 1.2.x before 1.2.1, 1.3.x before 1.3.1, and 1.4.x before 1.4.0-beta.2 allows remote attackers to conduct cross-site scripting (XSS) attacks by leveraging an application that contains templates whose context is set to a user-supplied primitive value and also contain the `{{this}}` special Handlebars variable.

CVSS 2.0

Severity: LOW

Problem Type: CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js 1.3.0
emberjs ember.js 1.1.2
emberjs ember.js 1.1.0
emberjs ember.js 1.0.0
emberjs ember.js 1.2.0
emberjs ember.js 1.4.0
emberjs ember.js 1.1.1
CVE-2014-0014 LOW

Ember.js 1.0.x before 1.0.1, 1.1.x before 1.1.3, 1.2.x before 1.2.1, 1.3.x before 1.3.1, and 1.4.x before 1.4.0-beta.2 allows remote attackers to conduct cross-site scripting (XSS) attacks by leveraging an application using the "{{group}}" Helper and a crafted payload.

CVSS 2.0

Severity: LOW

Problem Type: CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js 1.3.0
emberjs ember.js 1.1.2
emberjs ember.js 1.1.0
emberjs ember.js 1.0.0
emberjs ember.js 1.2.0
emberjs ember.js 1.4.0
emberjs ember.js 1.1.1
CVE-2014-0046 LOW

Cross-site scripting (XSS) vulnerability in the link-to helper in Ember.js 1.2.x before 1.2.2, 1.3.x before 1.3.2, and 1.4.x before 1.4.0-beta.6, when used in non-block form, allows remote attackers to inject arbitrary web script or HTML via the title attribute.

CVSS 2.0

Severity: LOW

Problem Type: CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js 1.3.0
emberjs ember.js 1.3.1
emberjs ember.js 1.2.0
emberjs ember.js 1.2.1
emberjs ember.js 1.4.0
CVE-2015-1866 MEDIUM

Cross-site scripting (XSS) vulnerability in Ember.js 1.10.x before 1.10.1 and 1.11.x before 1.11.2.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js 1.11.1
emberjs ember.js 1.11.0
emberjs ember.js 1.10.0
CVE-2015-7565 MEDIUM

Cross-site scripting (XSS) vulnerability in Ember.js 1.8.x through 1.10.x, 1.11.x before 1.11.4, 1.12.x before 1.12.2, 1.13.x before 1.13.12, 2.0.x before 2.0.3, 2.1.x before 2.1.2, and 2.2.x before 2.2.1 allows remote attackers to inject arbitrary web script or HTML.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-79,

Products Affected

Vendor Product Version
emberjs ember.js 1.13.6
emberjs ember.js 1.13.1
emberjs ember.js 2.1.1
emberjs ember.js 1.11.1
emberjs ember.js 2.0
emberjs ember.js 1.13.2
emberjs ember.js 1.9.1
emberjs ember.js 2.0.2
emberjs ember.js 2.0.1
emberjs ember.js 1.9
emberjs ember.js 1.12
emberjs ember.js 1.13.3
emberjs ember.js 1.8.1
emberjs ember.js 1.12.1
emberjs ember.js 1.11.3
emberjs ember.js 1.13.5
emberjs ember.js 1.8
emberjs ember.js 1.13.11
emberjs ember.js 1.10
emberjs ember.js 1.13.7
emberjs ember.js 1.11.2
emberjs ember.js 1.13.4
emberjs ember.js 1.13.9
emberjs ember.js 1.10.1
emberjs ember.js 2.2
emberjs ember.js 1.13
emberjs ember.js 1.13.10
emberjs ember.js 2.1
emberjs ember.js 1.11
emberjs ember.js 1.13.8