Description
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR) in @angular/platform-server serializes untrusted input inside template content nested in fallback raw-content elements such as noscript, iframe, noembed, and noframes. The Domino serializer's fallbackRawContentTags traversal stopped at the DocumentFragment used by template.content, so matchin
Remediation
References
Related Vulnerabilities
WordPress Plugin LearnPress-WordPress LMS SQL Injection (4.1.3.2)
WordPress Plugin DP Thumbnail TimThumb Arbitrary File Upload (1.0)
WordPress Plugin New Year Firework Cross-Site Scripting (1.1.9)
WordPress Plugin PopCash.Net Code Integration Tool Cross-Site Scripting (1.0)
Drupal Improper Access Control Vulnerability (CVE-2016-3165)