VDB
Sign up
MEDIUM6.1

GHSA-v3m3-f69x-jf25

Quill is vulnerable to XSS via HTML export feature

Details

A lack of data validation vulnerability in the HTML export feature in Quill in allows Cross-Site Scripting (XSS).

This issue affects Quill: 2.0.3.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/quill

No fixed version published yet for quill (npm). Pin to a known-safe version or switch to an alternative.

References