CVE-2019-15782
Published Aug 29, 2019WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name.
Vendor archive
2 CVEs tagged to vendor webtorrent — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name.
A security issue was found in bittorrent-dht before 5.1.3 that allows someone to send a specific series of messages to a listening peer and get it to reveal internal memory.