QID 983005
QID 983005: Nodejs (npm) Security Update for ag-grid (GHSA-wfw3-rgfr-6g67)
Affected versions of `ag-grid` are vulnerable to Cross-site Scripting (XSS) via Angular Expressions, if used in combination with AngularJS.
## Recommendation
Avoid using `ag-grid` in combination with AngularJS until a fix is available.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-wfw3-rgfr-6g67 for updates pertaining to this vulnerability.
Vendor References
- GHSA-wfw3-rgfr-6g67 -
github.com/advisories/GHSA-wfw3-rgfr-6g67
CVEs related to QID 983005
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-wfw3-rgfr-6g67 | ag-grid |
|