Vulnerability Description
i18n-node-angular is a module used to interact between i18n and angular without using additional resources. A REST API endpoint that is used for development in i18n-node-angular before 1.4.0 was not disabled in production environments a malicious user could fill up the server causing a Denial of Service or content injection.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| I18N-Node-Angular Project | I18N-Node-Angular | < 1.4.0 |
Related Weaknesses (CWE)
References
- https://github.com/oliversalzburg/i18n-node-angular/commit/877720d2d9bb90dc82337PatchThird Party Advisory
- https://nodesecurity.io/advisories/80Broken LinkThird Party Advisory
- https://github.com/oliversalzburg/i18n-node-angular/commit/877720d2d9bb90dc82337PatchThird Party Advisory
- https://nodesecurity.io/advisories/80Broken LinkThird Party Advisory
FAQ
What is CVE-2016-10524?
CVE-2016-10524 is a vulnerability with a CVSS score of 8.2 (HIGH). i18n-node-angular is a module used to interact between i18n and angular without using additional resources. A REST API endpoint that is used for development in i18n-node-angular before 1.4.0 was not d...
How severe is CVE-2016-10524?
CVE-2016-10524 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-10524?
Check the references section above for vendor advisories and patch information. Affected products include: I18N-Node-Angular Project I18N-Node-Angular.