Vuetifyjs develops a Vue.js component framework widely used for building user interface layers in web applications, with observed vulnerabilities centered on the core Vuetify product and cross-site scripting weaknesses arising from input-handling mechanisms in template rendering. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vuetifyjs over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25873MEDIUM The package vuetify from 2.0.0-beta.4 and before 2.6.10 are vulnerable to Cross-site Scripting (XSS) due to improper input sanitization in the 'eventName' function within the VCale | Sep 18, 2022 | 5.4 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vuetifyjs.
Media articles that mention a CVE ID that affects a product developed by Vuetifyjs — matched by CVE ID, not by vendor name.