Vulnerabilities/

Cross-site Scripting in Mermaid

Severity:
Medium

Description

Mermaid before 8.11.0 allows XSS when the antiscript feature is used.

Recommendation

Update the mermaid package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
mermaid
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing