Vulnerabilities/

Cross-Site Scripting in react-marked-markdown

Severity:
High

Description

All versions of react-marked-markdown are vulnerable to cross-site scripting (XSS) via href attributes. This is exploitable if user is provided to react-marked-markdown

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
react-marked-markdown
Anything's wrong? Let us know Last updated on January 09, 2023