Description
There is a vulnerability in all angular versions before 1.5.0-beta.0, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.
Remediation
References
Related Vulnerabilities
WordPress Plugin User Access Manager Unspecified Vulnerability (1.2.6.9)
WordPress Plugin TablePress XML External Entity Injection (1.8)
Jetty Session Fixation Vulnerability (CVE-2018-12538)
Oracle Database Server CVE-2011-0785 Vulnerability (CVE-2011-0785)
Magento Improper Input Validation Vulnerability (CVE-2019-7899)