Vulnerabilities/

Cross-Site Scripting in i18next (GHSA-cmh5-qc8w-xvcq)

Severity:
Medium

Description

Affected versions of i18next may fail to sanitize user input when certain configuration options are used. When using the .init method, passing interpolation options without passing an escapeValue will default to undefined rather than the assumed true.

Recommendation

Update the i18next package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
i18next
Anything's wrong? Let us know Last updated on September 08, 2023

This issue is available in SmartScanner Professional

See Pricing