Vulnerabilities/

Cross-site Scripting in jquery.json-viewer

Severity:
Medium

Description

The jquery.json-viewer library before version 1.5.0 for Node.js does not properly escape characters such as < in a JSON object, as demonstrated by a SCRIPT element.

Recommendation

Update the jquery.json-viewer package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
jquery.json-viewer
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing