CVE Database
/

CVE-2019-5422

Back to search

CVE-2019-5422

Published: Apr 3, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

XSS in buttle npm package version 0.2.0 causes execution of attacker-provided code in the victim's browser when an attacker creates an arbitrary file on the server.

VendorProductVersions

Npm, Inc.

buttle

affected
0.2.0

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now