Software Detail
Title
CRITICAL
HIGH
MEDIUM
LOW
CVE
CWE
Number of items displayed
React Number Of NVD 1 CRITICAL 0 HIGH 0 MEDIUM 1 LOW 0
URL https://reactjs.org/
Explanation React is a JavaScript library developed by Facebook for creating user interfaces.
It is suitable for creating SPA (Single Page Application).
It is created by combining small parts called components.
There is no fixed EOL.
Tag
  • MIT License
  • Javascript

Add Information URL
No Type Name URL
1 https://ja.reactjs.org/
2 https://ja.reactjs.org/versions/
3 https://ja.reactjs.org/docs/faq-versioning.html
4 https://ja.reactjs.org/blog/
5 https://github.com/facebook/react

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1 React18 18.2.0 June 15, 2022 March 23, 2022 0 0 0 0
2 React 17 17.0.2 March 22, 2021 Oct. 20, 2020 0 0 0 0
3 React 16 16.14.0 Oct. 15, 2020 Sept. 26, 2017 0 0 1 0
4 React 15 15.7.0 Oct. 15, 2020 April 7, 2016 0 0 0 0
5 React 0 0.9.0 0 0 0 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1 6.1
4.3
MEDIUM
Network
React applications which rendered to HTML using the ReactDOMServer API were not escaping user-supplied attribute names at render-time. That lack of escaping could lead to a cross-site scripting vulne… CWE-79
Cross-site Scripting
CVE-2018-6341 cpe:2.3:a:facebook:react:*:* 16.0.0
16.1.0
16.2.0
16.3.0
16.4.0








16.0.1
16.1.2
16.2.1
16.3.3
16.4.2
2019-10-10 08:41
2019-01-1
Show GitHub Exploit DB Packet Storm