Critical
Low
Medium
CVE-2025-57665
Overview
Element Plus Link component (el-link) through 2.10.6 implements insufficient input validation for the href attribute, creating a security abstraction gap that obscures URL-based attack vectors. The component passes user-controlled href values directly to underlying anchor elements without protocol v...
Critical
Low
Medium
No items found.