Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-11998— AngularJS XSS via SCE resource URL sanitization bypass

Quick assessment

Affected
Google AngularJS
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Google AngularJS是美国Google公司的一款前端JavaScript框架。 Google AngularJS 1.2.0-rc.3版本及之后版本存在输入验证错误漏洞,该漏洞源于严格的上下文转义(SCE)逻辑中,用于将整个URL与正则表达式匹配器的正则表达式存在缺陷导致部分匹配,从而绕过资源URL的某些SCE策略,可能导致在受害者浏览器会话环境中执行任意JavaScript。

CVSS 7.6 · High EPSS 0.50% · P41

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProduct Version RangeStatus
Google AngularJS >=1.2.0-rc.3 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-11998

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
AngularJS XSS via SCE resource URL sanitization bypass
Source: CVE Program / CVE List V5
Vulnerability Description
A flaw in AngularJS' Strict Contextual Escaping (SCE) logic allows bypassing certain SCE policies for resource URLs and can lead to arbitrary JavaScript execution within the context of the victim's browser session. SCE's purpose is to ensure that only trusted or safe values are used in certain security-sensitive contexts, such as resource URLs, including URLs that define executable JavaScript scripts, '<iframe>' documents, route templates, etc. A flaw in the logic that tries to match entire URLs against regular expression matchers can result in partial matches for certain types of regular expressions, effectively bypassing the policies and allowing the use of unsafe values as resource URLs. This issue affects AngularJS versions greater than or equal to 1.2.0-rc.3. Note: The AngularJS project was already End-of-Life when this CVE was published and will not receive any updates to address this issue. For more information see the  End-of-Life announcement https://docs.angularjs.org/misc/version-support-status .
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L
Source: CVE Program / CVE List V5
Vulnerability Type
特殊元素过滤不完全
Source: CVE Program / CVE List V5
Vulnerability Title
Google AngularJS 输入验证错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google AngularJS是美国Google公司的一款前端JavaScript框架。 Google AngularJS 1.2.0-rc.3版本及之后版本存在输入验证错误漏洞,该漏洞源于严格的上下文转义(SCE)逻辑中,用于将整个URL与正则表达式匹配器的正则表达式存在缺陷导致部分匹配,从而绕过资源URL的某些SCE策略,可能导致在受害者浏览器会话环境中执行任意JavaScript。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Google AngularJS >=1.2.0-rc.3 -

II. Public POCs for CVE-2026-11998

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-11998

请登录查看更多情报信息。

Other References for CVE-2026-11998 (1)

Same Patch Batch · Google · 2026-06-24 · 20 CVEs total

CVE-2026-13025 Google Chrome 输入验证错误漏洞
CVE-2026-12681 Google Go-Attestation 缓冲区错误漏洞
CVE-2026-13032 Google Chrome 资源管理错误漏洞
CVE-2026-13028 Google Chrome 资源管理错误漏洞
CVE-2026-13038 Google Chrome 资源管理错误漏洞
CVE-2026-13021 Google Chrome 输入验证错误漏洞
CVE-2026-13033 Google Chrome 缓冲区错误漏洞
CVE-2026-13022 Google Chrome 安全漏洞
CVE-2026-13023 Google Chrome 异常处理不当漏洞
CVE-2026-13026 Google Chrome 资源管理错误漏洞
CVE-2026-13036 Google Chrome 资源管理错误漏洞
CVE-2026-13024 Google Chrome 输入验证错误漏洞
CVE-2026-13029 Google Chrome 资源管理错误漏洞
CVE-2026-13027 Google Chrome 资源管理错误漏洞
CVE-2026-13031 Google Chrome 资源管理错误漏洞
CVE-2026-13034 Google Chrome 输入验证错误漏洞
CVE-2026-13030 Google Chrome 异常处理不当漏洞
CVE-2026-13037 Google Chrome 资源管理错误漏洞
CVE-2026-13035 Google Chrome 资源管理错误漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-11998

No comments yet


Leave a comment