kolibri@0.7.1 vulnerabilities

Kolibri - the offline app for universal education

Direct Vulnerabilities

Known vulnerabilities in the kolibri package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
CSV Injection

kolibri is a Kolibri - the offline app for universal education

Affected versions of this package are vulnerable to CSV Injection due to missing sanitization.

How to fix CSV Injection?

Upgrade kolibri to version 0.15.4 or higher.

[,0.15.4)