Description
Restify is a framework for building REST APIs. Restify >=2.0.0 <=4.0.4 using URL encoded script tags in a non-existent URL, an attacker can get script to run in some browsers.
Remediation
References
https://github.com/restify/node-restify/issues/1018
https://nodesecurity.io/advisories/314
Related Vulnerabilities
CVE-2020-7689 Vulnerability in npm package bcrypt
CVE-2020-36377 Vulnerability in npm package aaptjs
CVE-2020-26302 Vulnerability in maven package org.webjars.bowergithub.arasatasaygin:is.js
CVE-2022-21653 Vulnerability in maven package org.typelevel:jawn-parser_3
CVE-2023-39013 Vulnerability in maven package no.priv.garshol.duke:duke