Описание
Cross-Site Scripting (XSS) in pivottable
Affected versions of pivottable are vulnerable to cross-site scripting, due to a new mechanism used to render JSON elements.
Recommendation
Update to version 2.0.0 or later.
Пакеты
Наименование
pivottable
npm
Затронутые версииВерсия исправления
>= 1.4.0, < 2.0.0
2.0.0
CVE ID
Дефекты
CWE-79
Связанные уязвимости
CVE ID
Дефекты
CWE-79