Description
An issue was discovered in ViewerJS 0.5.8. A script from the component loads content via URL TAGs without properly sanitizing it. This leads to both open redirection and out-of-band resource loading.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 30 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 29 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Viewerjs
Viewerjs viewerjs |
|
| Weaknesses | CWE-601 | |
| CPEs | cpe:2.3:a:viewerjs:viewerjs:0.5.8:*:*:*:*:*:*:* | |
| Vendors & Products |
Viewerjs
Viewerjs viewerjs |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-30T16:03:06.228Z
Reserved: 2024-02-09T00:00:00.000Z
Link: CVE-2024-25676
Updated: 2024-08-01T23:52:05.651Z
Status : Deferred
Published: 2024-05-01T20:15:12.733
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-25676
No data.
OpenCVE Enrichment
No data.
Weaknesses