Vulnerabilities/

Cross-site Scripting in bootstrap-table

Severity:
Medium

Description

Bootstrap Tables XSS vulnerability with Table Export plug-in when exportOptions: htmlContent is true in GitHub repository wenzhixin/bootstrap-table prior to 1.20.2. Disclosing session cookies, disclosing secure session data, exfiltrating data to third-parties.

Recommendation

Update the bootstrap-table package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
bootstrap-table
Anything's wrong? Let us know Last updated on February 03, 2023