Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities BSI Germany

[NEU] [hoch] Angular: Mehrere Schwachstellen

Multiple vulnerabilities in Angular's platform-server, compiler, core, and common packages (CVSS Base Score 8.1) can be exploited by a remote, anonymous attacker to conduct cross-site scripting attacks, bypass security controls, or manipulate and expose data. Affected versions include Angular platform-server prior to 22.1.4, 21.2.22, and 20.3.30; Angular compiler prior to 22.1.0, 21.2.20, and 20.3.28; Angular core prior to 22.1.0, 21.2.20, and 20.3.28; and Angular common prior to 22.1.1, 21.2.20, and 20.3.28. The advisory confirms a mitigation is available but does not specify a workaround.
Read Full Article →

[WID-SEC-2026-3318] Angular: Mehrere Schwachstellen CVSS Base Score 8.1 (hoch) CVSS Temporal Score 7.3 (hoch) Remoteangriff ja Datum 10.09.2026 Stand 11.09.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung Angular ist ein TypeScript-basiertes Front-End-Webapplikationsframework. Es ist eine Weiterentwicklung des JavaScript basierten AngularJS. Produkte 10.09.2026 Open Source Angular platform-server <22.1.4 Open Source Angular platform-server <21.2.22 Open Source Angular platform-server <20.3.30 Open Source Angular compiler <22.1.0 Open Source Angular compiler <21.2.20 Open Source Angular compiler <20.3.28 Open Source Angular core <22.1.0 Open Source Angular core <21.2.20 Open Source Angular core <20.3.28 Open Source Angular common <22.1.1 Open Source Angular common <21.2.20 Open Source Angular common <20.3.28 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Angular ausnutzen, um Cross-Site-Scripting-Angriffe durchzuführen, Sicherheitsmaßnahmen zu umgehen oder Daten zu manipulieren und offenzulegen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article