Description
Restify is a framework for building REST APIs. Restify >=2.0.0 <=4.0.4 using URL encoded script tags in a non-existent URL, an attacker can get script to run in some browsers.
Remediation
References
https://github.com/restify/node-restify/issues/1018
https://nodesecurity.io/advisories/314
Related Vulnerabilities
CVE-2023-26143 Vulnerability in npm package blamer
CVE-2021-3766 Vulnerability in npm package objection
CVE-2022-25927 Vulnerability in maven package org.webjars.npm:ua-parser-js
CVE-2022-43416 Vulnerability in maven package org.jenkins-ci.plugins:katalon
CVE-2023-49620 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-service