Cross-Site Scripting via JSONP
Modified: 2/24/2021
package
pkg:npm/angular
Cross-Site Scripting via JSONP
Modified: 2/24/2021
angular vulnerable to regular expression denial of service via the $resource service
Modified: 9/10/2026
angular vulnerable to regular expression denial of service via the angular.copy() utility
Modified: 9/10/2026
angular vulnerable to super-linear runtime due to backtracking
Modified: 9/10/2026
XSS via JQLite DOM manipulation functions in AngularJS
Modified: 10/8/2021
Angular's deprecated package has a Cross-Site Scripting issue
Modified: 7/17/2026
angular Prototype Pollution vulnerability
Modified: 7/8/2026
AngularJS improperly sanitizes SVG elements
Modified: 9/10/2026
angular vulnerable to regular expression denial of service (ReDoS)
Modified: 9/10/2026
AngularJS allows attackers to bypass common image source restrictions
Modified: 9/10/2026
Angular vulnerable to Cross-site Scripting
Modified: 9/10/2026
AngularJS allows attackers to bypass common image source restrictions
Modified: 9/10/2026
Angular (deprecated package) Cross-site Scripting
Modified: 9/10/2026
angular vulnerable to regular expression denial of service via the <input type="url"> element
Modified: 9/10/2026
AngularJS Cross-site Scripting due to failure to sanitize `xlink.href` attributes
Modified: 11/20/2025