Description
Restify is a framework for building REST APIs. Restify >=2.0.0 <=4.0.4 using URL encoded script tags in a non-existent URL, an attacker can get script to run in some browsers.
Remediation
References
https://github.com/restify/node-restify/issues/1018
https://nodesecurity.io/advisories/314
Related Vulnerabilities
CVE-2021-31411 Vulnerability in maven package com.vaadin:flow-server
CVE-2022-4640 Vulnerability in maven package net.mingsoft:ms-mcms
CVE-2023-35147 Vulnerability in maven package org.jenkins-ci.plugins:aws-codecommit-trigger
CVE-2021-4264 Vulnerability in maven package org.webjars:dustjs-linkedin
CVE-2023-41900 Vulnerability in maven package org.eclipse.jetty:jetty-openid