Description
node-connect before 2.8.1 has XSS in the Sencha Labs Connect middleware
Remediation
References
http://www.openwall.com/lists/oss-security/2014/04/21/2
http://www.openwall.com/lists/oss-security/2014/05/13/1
https://access.redhat.com/security/cve/cve-2013-7370
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-7370
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-7370
https://nodesecurity.io/advisories/methodOverride_Middleware_Reflected_Cross-Site_Scripting
https://security-tracker.debian.org/tracker/CVE-2013-7370
Related Vulnerabilities
CVE-2021-21266 Vulnerability in maven package org.openhab.addons.bundles:org.openhab.transform.xpath
CVE-2023-26477 Vulnerability in maven package org.xwiki.platform:xwiki-platform-flamingo-theme-ui
CVE-2014-3741 Vulnerability in npm package printer
CVE-2022-28135 Vulnerability in maven package org.jvnet.hudson.plugins:instant-messaging
CVE-2021-39177 Vulnerability in maven package org.geysermc:connector