VDB
Sign up
MEDIUM4.7

GHSA-c54w-7j5f-xg98

@builder.io/qwik-city Cross-Site Request Forgery vulnerability

Quick fix

GHSA-c54w-7j5f-xg98 — @builder.io/qwik-city: upgrade to the fixed version with the command below.

npm install @builder.io/qwik-city@0.104.0

Details

Cross-Site Request Forgery (CSRF) in GitHub repository builderio/qwik prior to 0.104.0.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/@builder.io/qwik-city
Introduced in: 0Fixed in: 0.104.0
Fixnpm install @builder.io/qwik-city@0.104.0

References