In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsA fix was pushed into the master
branch but not yet published.
Affected versions of this package are vulnerable to Resource Injection through the HLS demuxer. An attacker can bypass security checks and trigger arbitrary demuxers by appending base64-encoded data URIs with specific file extensions.