Vulnerabilities/

Cross-site scripting in Survey Creator

Severity:
Medium

Description

Cross Site Scripting (XSS) vulnerability in SurveyJS Survey Creator v.1.9.132 and before, allows attackers to execute arbitrary code and obtain sensitive information via the title parameter in form.

Recommendation

Update the survey-creator package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
survey-creator
Anything's wrong? Let us know Last updated on March 21, 2024

This issue is available in SmartScanner Professional

See Pricing