Vulnerabilities/

x-data-spreadsheet through 1.1.9 vulnerable to Cross-site Scripting

Severity:
Medium

Description

All versions of package x-data-spreadsheet are vulnerable to Cross-site Scripting (XSS) due to missing sanitization of values inserted into the cells.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
x-data-spreadsheet
Anything's wrong? Let us know Last updated on January 27, 2023