Vulnerabilities/

Cross-site Scripting in pandao

Severity:
Medium

Description

pandao Editor.md 1.5.0 allows XSS via an attribute of an ABBR or SUP element.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
editor.md
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing