Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-cp47-r258-q626: Vega vulnerable to arbitrary code execution when clicking href links

Vega is vulnerable to arbitrary code execution when clicking href links. Versions 5.4.1 and 4.5.1 contain a patch.

ghsa
#git

Vega vulnerable to arbitrary code execution when clicking href links

Moderate severity GitHub Reviewed Published Mar 2, 2023 in vega/vega • Updated Mar 2, 2023

ghsa: Latest News

GHSA-95m2-chm4-mq7m: PHP-Textile has persistent XSS vulnerability in image link handling