In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Cross-site Scripting (XSS) vulnerabilities in an interactive lesson.
Start learningUpgrade bpmn-js-properties-panel
to version 0.31.0 or higher.
bpmn-js-properties-panel is a properties panel extension for bpmn-js that adds the ability to edit technical properties.
Affected versions of this package are vulnerable to Cross-site Scripting (XSS). There is a lack of input sanitation which leads to there being several specially configured diagram elements where scripts can be injected.