nodejs-angular: XSS due to regex-based HTML replacement
Published Jun 8, 2020
5.4
MEDIUMCVSS 3.1
EPSS 1.93%
Description
angular.js prior to 1.8.0 allows cross site scripting. The regex-based input HTML replacement may turn sanitized code into unsanitized one. Wrapping "<option>" elements in "<select>" ones changes parsing behavior, leading to possibly unsanitizing code.
Affected products
- Vendor n/a Product Angular.js Defaultn/a
- Version All versions prior to 1.8.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Angular.js | n/a |
|
No data.
Red Hat AMQ 7.8.1
n/a
Fixed · RHSA-2021:0417
Red Hat Ansible Tower 3.7 for RHEL 7
ansible-tower-37/ansible-tower-rhel7:3.7.4-1
Fixed · RHSA-2020:5249
Red Hat Fuse 7.8.0
n/a
Fixed · RHSA-2020:5568
Red Hat Single Sign-On 7.4 for RHEL 6
rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el6sso
Fixed · RHSA-2021:0967
Red Hat Single Sign-On 7.4 for RHEL 7
rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el7sso
Fixed · RHSA-2021:0968
Red Hat Single Sign-On 7.4 for RHEL 8
rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el8sso
Fixed · RHSA-2021:0969
Red Hat Single Sign-On 7.4.6
rh-sso7-keycloak
Fixed · RHSA-2021:0974
OpenShift Service Mesh 1
servicemesh-grafana
Will not fix
Red Hat AMQ Broker 7
angularjs
Affected
Red Hat Decision Manager 7
angular
Out of support scope
Red Hat Fuse 7
angularjs
Affected
Red Hat OpenShift Container Platform 3.11
kibana
Will not fix
Red Hat OpenShift Container Platform 3.11
openshift3/grafana
Will not fix
Red Hat OpenShift Container Platform 4
kibana
Will not fix
Red Hat OpenShift Container Platform 4
logging-kibana5-container
Will not fix
Red Hat OpenShift Container Platform 4
openshift4/ose-grafana
Will not fix
Red Hat OpenShift Container Platform 4
openshift4/ose-logging-kibana6
Will not fix
Red Hat Process Automation 7
angular
Out of support scope
Red Hat Quay 3
angular
Not affected
Red Hat Storage 3
grafana
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat AMQ 7.8.1 | n/a | Fixed | RHSA-2021:0417 |
| Red Hat Ansible Tower 3.7 for RHEL 7 | ansible-tower-37/ansible-tower-rhel7:3.7.4-1 | Fixed | RHSA-2020:5249 |
| Red Hat Fuse 7.8.0 | n/a | Fixed | RHSA-2020:5568 |
| Red Hat Single Sign-On 7.4 for RHEL 6 | rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el6sso | Fixed | RHSA-2021:0967 |
| Red Hat Single Sign-On 7.4 for RHEL 7 | rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el7sso | Fixed | RHSA-2021:0968 |
| Red Hat Single Sign-On 7.4 for RHEL 8 | rh-sso7-keycloak-0:9.0.12-1.redhat_00001.1.el8sso | Fixed | RHSA-2021:0969 |
| Red Hat Single Sign-On 7.4.6 | rh-sso7-keycloak | Fixed | RHSA-2021:0974 |
| OpenShift Service Mesh 1 | servicemesh-grafana | Will not fix | n/a |
| Red Hat AMQ Broker 7 | angularjs | Affected | n/a |
| Red Hat Decision Manager 7 | angular | Out of support scope | n/a |
| Red Hat Fuse 7 | angularjs | Affected | n/a |
| Red Hat OpenShift Container Platform 3.11 | kibana | Will not fix | n/a |
| Red Hat OpenShift Container Platform 3.11 | openshift3/grafana | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | kibana | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | logging-kibana5-container | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | openshift4/ose-grafana | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | openshift4/ose-logging-kibana6 | Will not fix | n/a |
| Red Hat Process Automation 7 | angular | Out of support scope | n/a |
| Red Hat Quay 3 | angular | Not affected | n/a |
| Red Hat Storage 3 | grafana | Will not fix | n/a |
angular
npm
Introduced 0 Fixed 1.8.0
| Ecosystem | Package | Introduced | Fixed |
|---|---|---|---|
| npm | angular | 0 | 1.8.0 |
Remediation
Red Hat statement
Quay does not contain the affected component usage.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:S/C:N/I:P/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (15 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 1.93% (0.01932) | 79.30th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.14% (0.02142) | 79.61th | v5 (v2026.06.15) |
| Mar 30, 2025 | 0.75% (0.00753) | 70.88th | v4 (v2025.03.14) |
| Mar 29, 2025 | 2.45% (0.02454) | 75.33th | v4 (v2025.03.14) |
| Mar 17, 2025 | 0.75% (0.00753) | 71.47th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.15% (0.00152) | 52.90th | v3 (v2023.03.01) |
| Apr 12, 2024 | 0.15% (0.00155) | 51.19th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.22% (0.00220) | 58.10th | v3 (v2023.03.01) |
| Mar 6, 2023 | 10.92% (0.10919) | 94.72th | v2 (v2022.01.01) |
| Apr 1, 2022 | 10.92% (0.10919) | 94.28th | v2 (v2022.01.01) |
| Feb 4, 2022 | 10.92% (0.10919) | 88.36th | v2 (v2022.01.01) |
| Feb 3, 2022 | 10.99% (0.10990) | 88.00th | v1 |
| Jan 6, 2022 | 10.99% (0.10990) | 87.86th | v1 |
| Sep 1, 2021 | 10.99% (0.10990) | 95.28th | v1 |
| Apr 14, 2021 | 10.99% (0.10990) | 0.00th | v1 |
References (29)
- https://access.redhat.com/security/cve/CVE-2020-7676 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1849206 Issue Tracking
- https://github.com/advisories/GHSA-mhp6-pxh8-r675 Advisory
- https://github.com/angular/angular.js/commit/2df43c07779137d1bddf7f3b282a1287a8634acd
- https://github.com/angular/angular.js/pull/17028
- https://github.com/angular/angular.js/pull/17028%2C x_refsource_MISC
- https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r3f05cfd587c774ea83c18e59eda9fa37fa9bbf3421484d4ee1017a20%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r3f05cfd587c774ea83c18e59eda9fa37fa9bbf3421484d4ee1017a20@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r446c297cd6cda2bd7e345c9b0741d7f611df89902e5d515848c6f4b1%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r446c297cd6cda2bd7e345c9b0741d7f611df89902e5d515848c6f4b1@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r455ebd83a1c69ae8fd897560534a079c70a483dbe1e75504f1ca499b%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r455ebd83a1c69ae8fd897560534a079c70a483dbe1e75504f1ca499b@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r57383582dcad2305430321589dfaca6793f5174c55da6ce8d06fbf9b%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r57383582dcad2305430321589dfaca6793f5174c55da6ce8d06fbf9b@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r79e3feaaf87b81e80da0e17a579015f6dcb94c95551ced398d50c8d7%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r79e3feaaf87b81e80da0e17a579015f6dcb94c95551ced398d50c8d7@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/r80f210a5f4833d59c5d3de17dd7312f9daba0765ec7d4052469f13f1%40%3Cozone-commits.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r80f210a5f4833d59c5d3de17dd7312f9daba0765ec7d4052469f13f1@%3Cozone-commits.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/rb6423268b25db0f800359986867648e11dbd38e133b9383e85067f02%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rb6423268b25db0f800359986867648e11dbd38e133b9383e85067f02@%3Cozone-issues.hadoop.apache.org%3E
- https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679%40%3Ccommits.nifi.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679@%3Ccommits.nifi.apache.org%3E
- https://lists.apache.org/thread.html/rfa2b19d01d10a8637dc319a7d5994c3dbdb88c0a8f9a21533403577a%40%3Cozone-issues.hadoop.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rfa2b19d01d10a8637dc319a7d5994c3dbdb88c0a8f9a21533403577a@%3Cozone-issues.hadoop.apache.org%3E
- https://nvd.nist.gov/vuln/detail/CVE-2020-7676
- https://snyk.io/vuln/SNYK-JS-ANGULAR-570058 x_refsource_MISCThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2020-7676
Change history (0)
No recorded changes yet.