Software Detail
Title
CRITICAL
HIGH
MEDIUM
LOW
CVE
CWE
Number of items displayed
Angular Number Of NVD 2 CRITICAL 0 HIGH 1 MEDIUM 1 LOW 0
URL https://angular.io/
Explanation Angular is a JavaScript library for creating user interfaces developed by Google.
It is suitable for creating SPA (Single Page Application).
It uses TypeScript (an extension to JavaScript that adds type definitions, ES6 syntax, etc.).


A major version is released every 6 months.
All major versions will have the following support from release

6 months after release: additional features and bug fixes
6 to 12 months after release: critical fixes and security fixes
Tag
  • MIT License
  • Google
  • Javascript

Add Information URL
No Type Name URL
1 https://angular.io/guide/releases
2 https://github.com/angular
3 https://blog.angular.io/
4 https://angular.jp/
5 https://github.com/angular/angular/releases

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
1 Angular 15 15.2.9 May 3, 2023 Nov. 18, 2022 May 18, 2023 May 18, 2024 0 0 0 0
2 Angular 14 14.3.0 March 13, 2023 June 2, 2022 Nov. 18, 2022 Nov. 18, 2023 0 0 0 0
3 Angular 13 13.4.0" data-view-component="true" class="Link--primary April 6, 2023 Nov. 4, 2021 June 2, 2022 May 4, 2023 0 0 0 0
4 Angular 12 12.2.17 Nov. 22, 2022 May 12, 2021 Jan. 1, 2000 0 0 0 0
5 Angular 11 11.2.14 May 12, 2021 Nov. 11, 2020 May 11, 2021 May 11, 2022 0 0 1 0
6 Angular 10 10.0.3 April 14, 2021 June 25, 2020 Dec. 24, 2020 Dec. 24, 2021 0 0 1 0
7 Angular 9 9.1.13 Dec. 16, 2020 Feb. 6, 2020 Aug. 6, 2020 Aug. 6, 2021 0 0 1 0
8 Angular 8 8.2.13 Oct. 31, 2019 May 28, 2019 Nov. 28, 2019 Nov. 28, 2020 0 0 1 0
9 Angular 7 7.2.16 Jan. 9, 2020 Oct. 19, 2018 April 19, 2019 April 19, 2020 0 0 1 0
10 Angular 6 6.1.10 Oct. 11, 2018 May 4, 2018 Nov. 4, 2018 Nov. 4, 2019 0 0 1 0
11 Angular 5 5.2.11 May 17, 2018 Nov. 2, 2017 May 2, 2018 May 2, 2019 0 0 1 0
12 Angular 4 4.4.7 April 16, 2018 March 24, 2017 Sept. 24, 2017 Sept. 24, 2018 0 0 1 0
13 Angular 2 2.4.10 March 17, 2017 Sept. 15, 2016 Feb. 15, 2017 Feb. 15, 2018 0 0 1 0
14 Angular 1 1.0.8 Jan. 1, 2000 0 0 1 0
15 Angular 0 0.10.6 Jan. 1, 2000 0 0 1 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
1 7.5
-
HIGH
Network
This affects versions of the package angular from 1.3.0. A regular expression used to split the value of the ng-srcset directive is vulnerable to super-linear runtime due to backtracking. With large … CWE-1333
 Inefficient Regular Expression Complexity
CVE-2024-21490 cpe:2.3:a:angular:angular:*:* 1.3.0 2024-05-14 23:54
2024-02-10
Show GitHub Exploit DB Packet Storm
2 5.4
3.5
MEDIUM
Network
A vulnerability was found in Angular up to 11.0.4/11.1.0-next.2. It has been classified as problematic. Affected is the handling of comments. The manipulation leads to cross site scripting. It is pos… CWE-79
Cross-site Scripting
CVE-2021-4231 cpe:2.3:a:angular:angular:11.1.0:next_2
cpe:2.3:a:angular:angular:11.1.0:next_1
cpe:2.3:a:angular:angular:11.1.0:…
11.0.5 2022-06-8 04:07
2022-05-26
Show GitHub Exploit DB Packet Storm