THREAT OPS › Threat News › [NVD] CVE-2024-11831 (MEDIUM 5.4) — A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed whe
[NVD] CVE-2024-11831 (MEDIUM 5.4) — A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed whe
CVE-2024-11831 CVSS: 5.4 MEDIUM Published: 2025-02-10T16:15:37.080
A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site
MITRE ATT&CK techniques
- JavaScriptT1059.007
Indicators of compromise
- CVE-2024-11831cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-11831