Filtered by vendor Piqnt Subscriptions
Filtered by product Stage.js Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-53386 1 Piqnt 1 Stage.js 2025-06-27 4.9 Medium
Stage.js through 0.8.10 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be shadowed by attacker-injected HTML elements.