Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-23414 | 2 Fedoraproject, Videojs | 2 Fedora, Video.js | 2023-02-03 | 4.3 MEDIUM | 6.1 MEDIUM |
This affects the package video.js before 7.14.3. The src attribute of track tag allows to bypass HTML escaping and execute arbitrary code. |