Vulnerabilities/

fuelux vulnerable to Cross-Site Scripting in Pillbox feature

Severity:
High

Description

Affected versions of fuelux contain a cross-site scripting vulnerability in the Pillbox feature. By supplying a script as a value for a new pillbox, it is possible to cause arbitrary script execution.

Recommendation

Update the fuelux package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
fuelux
Anything's wrong? Let us know Last updated on January 11, 2023

This issue is available in SmartScanner Professional

See Pricing