All versions of the package angular; all versions of the package angularjs.core; all versions of the package angularjs are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of <textarea> elements.
History

Mon, 28 Jul 2025 10:15:00 +0000

Type Values Removed Values Added
Description All versions of package angular are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of <textarea> elements. All versions of the package angular; all versions of the package angularjs.core; all versions of the package angularjs are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of <textarea> elements.
Title Cross-site Scripting (XSS) angularjs: Angular Cross-site Scripting (XSS)
References

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.0072}

epss

{'score': 0.00782}


Tue, 29 Apr 2025 06:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Low


cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published: 2022-07-15T20:02:02.727939Z

Updated: 2025-07-28T09:59:04.148Z

Reserved: 2022-02-24T00:00:00

Link: CVE-2022-25869

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-07-15T20:15:08.487

Modified: 2025-07-28T10:15:23.910

Link: CVE-2022-25869

cve-icon Redhat

Severity : Low

Publid Date: 2022-07-15T00:00:00Z

Links: CVE-2022-25869 - Bugzilla