Vulnerabilities/

generator-hottowel Cross-site Scripting vulnerability

Severity:
Medium

Description

A vulnerability, which was classified as problematic, was found in generator-hottowel 0.0.11. Affected is an unknown function of the file app/templates/src/server/_app.js of the component 404 Error Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely.

Recommendation

Update the generator-hottowel package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
generator-hottowel
Anything's wrong? Let us know Last updated on March 02, 2023

This issue is available in SmartScanner Professional

See Pricing