0.4.2
15 years ago
8 months ago
Known vulnerabilities in the easywidgets package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Cross-site Scripting (XSS) attacks. When using user input to perform tasks on the server, characters like < > " ' must escaped properly. Otherwise, an attacker can manipulate the input to introduce additional attributes, potentially executing code. This may lead to a Cross-site Scripting (XSS) vulnerability, assuming an attacker can influence the value entered into the template. How to fix Cross-site Scripting (XSS)? Upgrade | [,0.2dev-20150922) |