Vulnerabilities/

Cross-site Scripting in lightning-server

Severity:
Medium

Description

This affects all versions of package lightning-server. It is possible to inject malicious JavaScript code as part of a session controller.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
lightning-server
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing