Vulnerabilities/

@sveltejs/kit has unescaped error message included on error page

Severity:
Low

Description

The static error.html template for errors contains placeholders that are replaced without escaping the content first.

Recommendation

Update the @sveltejs/kit package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@sveltejs/kit
Anything's wrong? Let us know Last updated on November 25, 2024

This issue is available in SmartScanner Professional

See Pricing