CVE-2019-0542

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
09/01/2019
Last modified:
07/11/2023

Description

A remote code execution vulnerability exists in Xterm.js when the component mishandles special characters, aka "Xterm Remote Code Execution Vulnerability." This affects xterm.js.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:xtermjs:xterm.js:*:*:*:*:*:*:*:* 5.0.0 (excluding)
cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:* 3.9 (including) 3.9.99 (excluding)
cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:* 3.10 (including) 3.10.163 (excluding)
cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:* 3.11 (excluding) 3.11.104 (excluding)