nuxt@3.4.1 vulnerabilities

Nuxt is a free and open-source framework with an intuitive and extendable way to create type-safe, performant and production-grade full-stack web applications and websites with Vue.js.

Direct Vulnerabilities

Known vulnerabilities in the nuxt package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Arbitrary Code Injection

Affected versions of this package are vulnerable to Arbitrary Code Injection via the import function of the test-component-wrapper component due to improper input sanitization.

How to fix Arbitrary Code Injection?

Upgrade nuxt to version 3.4.3 or higher.

>=3.4.0 <3.4.3