Live data from GitHub and npm, updated daily.
Data last fetched: 2026-05-15
10 active CVEs reported via OSV.dev
Cross-Site Scripting via JSONP
angular vulnerable to regular expression denial of service via the $resource service
angular vulnerable to regular expression denial of service via the angular.copy() utility
angular vulnerable to super-linear runtime due to backtracking
XSS via JQLite DOM manipulation functions in AngularJS
angular Prototype Pollution vulnerability
AngularJS improperly sanitizes SVG elements
angular vulnerable to regular expression denial of service (ReDoS)
AngularJS allows attackers to bypass common image source restrictions
Angular vulnerable to Cross-site Scripting
Get SLA-backed support, security patches, and direct access to senior engineers for AngularJS — without relying on volunteer maintainers.
Talk to an Expert →