@urql/next@1.1.1-canary-1d6be509 vulnerabilities
Convenience wrappers for using urql with NextJS.
-
latest version
1.1.3
-
latest non vulnerable version
-
first published
a year ago
-
latest version published
20 days ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the @urql/next package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
@urql/next is a Convenience wrappers for using urql with NextJS. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) due to improper escaping of HTML-like characters in the response stream. An attacker can inject malicious scripts by ensuring that the response returns How to fix Cross-site Scripting (XSS)? Upgrade |
<1.1.1
|