VDB
Sign up
MEDIUM6.1

GHSA-r4hg-4cpq-q57c

jSuites subect to Cross-site Scripting

Quick fix

GHSA-r4hg-4cpq-q57c — jsuites: upgrade to the fixed version with the command below.

npm install jsuites@5.0.1

Details

Versions of the package jsuites before 5.0.1 are vulnerable to Cross-site Scripting (XSS) due to improper user-input sanitization in the Editor() function.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/jsuites
Introduced in: 0Fixed in: 5.0.1
Fixnpm install jsuites@5.0.1

References