Back to bug 2102863

Who When What Removed Added
Sage McTaggart 2022-06-30 20:50:57 UTC Blocks 2102865
Sage McTaggart 2022-06-30 20:52:44 UTC CC aileenc, alazarot, anstephe, balejosg, bdettelb, bmontgom, chazlett, emingora, eparis, eric.wittmann, etirelli, ibek, janstey, jburrell, jhadvig, jochrist, jpavlik, jrokos, jschatte, jstastny, krathod, kverlaen, mnovotny, mwringe, nstielau, pantinor, peholase, pjindal, ploffay, rareddy, rguimara, rrajasek, sponnaga, tzimanyi
Avinash Hanwate 2022-07-07 05:19:56 UTC Summary npm: XSS in parse-url CVE-2022-2217 npm: XSS in parse-url
Avinash Hanwate 2022-07-07 05:22:44 UTC Flags needinfo?(amctagga)
Sage McTaggart 2022-07-07 18:38:34 UTC Flags needinfo?(amctagga)
Avinash Hanwate 2022-07-14 05:37:55 UTC CC ahanwate
Avinash Hanwate 2022-07-14 05:45:12 UTC Depends On 2107000
Red Hat Bugzilla 2022-07-31 22:42:20 UTC CC tzimanyi
Red Hat Bugzilla 2022-08-12 04:38:12 UTC CC etirelli
Red Hat Bugzilla 2022-10-28 13:13:00 UTC CC krathod
Red Hat Bugzilla 2022-11-14 23:22:41 UTC CC jstastny
TEJ RATHI 2023-01-10 13:48:44 UTC CC dfreiber, ellin, nboldt, rgarg, rogbas, scorneli, shbose, ubhargav, vkumar
Nick Tait 2023-03-15 21:50:40 UTC Doc Text Cross site scripting in the parse-url package. A attacker could use escape characters to run malicious JavaScript code on a webpage which was generated by the affected package. The highest impacts are to Integrity and Confidentiality.
Paige Jung 2023-03-15 22:11:01 UTC Doc Text Cross site scripting in the parse-url package. A attacker could use escape characters to run malicious JavaScript code on a webpage which was generated by the affected package. The highest impacts are to Integrity and Confidentiality. A cross-site-scripting (XSS) flaw was found in the parse-url package of npm. This issue could allow an attacker to use escape characters to run malicious JavaScript code on a webpage that was generated by the affected package. The highest impact is to integrity and confidentiality.
Red Hat Bugzilla 2023-05-15 18:03:50 UTC CC rrajasek
Red Hat Bugzilla 2023-07-07 08:32:38 UTC Assignee security-response-team nobody
Red Hat Bugzilla 2023-07-21 22:26:22 UTC CC jpavlik

Back to bug 2102863