Vulnerabilities/

react-query-streamed-hydration Cross-site Scripting vulnerability

Severity:
High

Description

The @tanstack/react-query-next-experimental NPM package is vulnerable to a cross-site scripting vulnerability. To exploit this, an attacker would need to either inject malicious input or arrange to have malicious input be returned from an endpoint.

Recommendation

Update the @tanstack/react-query-next-experimental package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@tanstack/react-query-next-experimental
Anything's wrong? Let us know Last updated on January 30, 2024