CVE-2017-16015

Forms is a library for easily creating HTML forms. Versions before 1.3.0 did not have proper html escaping. This means that if the application did not sanitize html on behalf of forms, use of forms may be vulnerable to cross site scripting
Configurations

Configuration 1 (hide)

cpe:2.3:a:forms_project:forms:*:*:*:*:*:node.js:*:*

Information

Published : 2018-06-04 19:29

Updated : 2019-10-09 23:24


NVD link : CVE-2017-16015

Mitre link : CVE-2017-16015


JSON object : View

Products Affected

forms_project

  • forms
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')