Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

h3js — Vulnerabilities & Security Advisories 6

Browse all 6 CVE security advisories affecting h3js. AI-powered Chinese analysis, POCs, and references for each vulnerability.

h3js is a JavaScript library for embedding interactive 3D visualizations in web applications. Historically, it has been susceptible to cross-site scripting (XSS) vulnerabilities due to improper input sanitization in rendering functions, and remote code execution (RCE) through maliciously crafted 3D model files. The library has also faced privilege escalation issues where sandboxed contexts could bypass security restrictions. Notable security characteristics include its client-side execution model and dynamic content rendering capabilities. While no major public incidents have been widely documented, the six CVEs recorded highlight recurring issues around input validation and secure rendering practices in web-based 3D visualization libraries.

Found 5 results / 6Clear Filters
Top products by h3js: h3 srvx

This page lists every published CVE security advisory associated with h3js. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.