VDB
Sign up

package

npm/hfs

pkg:npm/hfs

LOWnpm
GHSA-xcxh-6cv4-q8p8

HFS user adding a "web link" in HFS is vulnerable to "target=_blank" exploit

Modified: 8/12/2025