Vulnerabilities/

Node Connect Reflected Cross-Site Scripting in Sencha Labs Connect middleware

Severity:
Medium

Description

node-connect before 2.8.2 has cross site scripting in Sencha Labs Connect middleware (vulnerability due to incomplete fix for CVE-2013-7370)

Recommendation

Update the connect package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
connect
Anything's wrong? Let us know Last updated on August 17, 2023

This issue is available in SmartScanner Professional

See Pricing