CVE-2024-8372
NVD Listing:- NVD - CVE-2024-8372
Bug Fixes
- ng-srcset: Addresses a Content Spoofing vulnerability and failure to sanitize image URLs set by $compileProvider.imgSrcSanitizationWhitelist().
This patch addresses the CVE-2024-8372 vulnerability, where users could bypass image source restrictions using ng-attr-src