Description
A remote code execution vulnerability exists in Xterm.js when the component mishandles special characters, aka "Xterm Remote Code Execution Vulnerability." This affects xterm.js.
Remediation
References
http://www.securityfocus.com/bid/106434
https://access.redhat.com/errata/RHBA-2019:0959
https://access.redhat.com/errata/RHSA-2019:1422
https://access.redhat.com/errata/RHSA-2019:2551
https://access.redhat.com/errata/RHSA-2019:2552
https://github.com/xtermjs/xterm.js/releases
Related Vulnerabilities
CVE-2019-15599 Vulnerability in maven package org.webjars.npm:tree-kill
CVE-2020-7673 Vulnerability in npm package node-extend
CVE-2017-1001002 Vulnerability in maven package org.webjars.bower:mathjs
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-webflux
CVE-2023-40177 Vulnerability in maven package org.xwiki.platform:xwiki-platform-appwithinminutes-ui