org.webjars.npm:react-svg@1.1.5 vulnerabilities
-
latest version
1.1.5
-
first published
8 years ago
-
latest version published
8 years ago
-
licenses detected
- [1.1.5,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.webjars.npm:react-svg package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.webjars.npm:react-svg is a React component that injects SVG into the DOM. Affected versions of this package are vulnerable to Cross-site Scripting (XSS). The documentation mentioned that the default value for evalScripts is How to fix Cross-site Scripting (XSS)? There is no fixed version for |
[0,)
|