XSS in Angular SSR via domino <noscript> Raw-Text Serialization Escaping
Security Advisory
GHSA-xh76-h4q8-g58q
High
Angular
Affected:
- @angular/platform-server@>=22.0.0-next.0 < 22.0.0-rc.2
- @angular/platform-server@>=21.0.0-next.0 < 21.2.16
- @angular/platform-server@>=20.0.0-next.0 < 20.3.24
- @angular/platform-server@>=19.0.0-next.0 < 19.2.25
- @angular/platform-server@<=18.2.14
Fixed in:
- 22.0.0-rc.2
- 21.2.16
- 20.3.24
- 19.2.25
Referenced CVEs:
CVE-2026-50556
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.