Vulnerabilities/

Toast UI Grid vulnerable to Cross-site Scripting

Severity:
Medium

Description

Toast UI Grid is a component to display and edit data. Versions prior to 4.21.3 are vulnerable to cross-site scripting attacks when pasting specially crafted content into editable cells. This issue was fixed in version 4.21.3. There are no known workarounds.

Recommendation

Update the tui-grid package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
tui-grid
Anything's wrong? Let us know Last updated on January 31, 2023

This issue is available in SmartScanner Professional

See Pricing