3.15.4
4 months ago
1 days ago
Known vulnerabilities in the @nuxt/rspack-builder package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
@nuxt/rspack-builder is a rspack bundler for Nuxt Affected versions of this package are vulnerable to Exposed Dangerous Method or Function when using webpack or rspack builder and navigating to a malicious website.
An attacker can inject a script tag to request a classic script, which is not restricted by the same-origin policy. This allows the script to execute and access the How to fix Exposed Dangerous Method or Function? Upgrade | <3.15.3>=3.12.2 <3.15.3 |