CVE-2017-16009: AG-Grid
Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.
ag-grid is an advanced data grid that is library agnostic. ag-grid is vulnerable to Cross-site Scripting (XSS) via Angular Expressions, if AngularJS is used in combination with ag-grid.
Affected products
- AG-Grid AG-Grid: before 27.0.0 (fixed in 27.0.0)
Published 2018-06-04. Last modified 2026-06-17.