Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-589f-c66p-hxr4: grapesjs before 0.19.5 vulnerable to Cross-site Scripting

The package grapesjs before 0.19.5 is vulnerable to Cross-site Scripting (XSS) due to an improper sanitization of the class name in Selector Manager.

ghsa
#xss#js#git

grapesjs before 0.19.5 vulnerable to Cross-site Scripting

Moderate severity GitHub Reviewed Published Jul 26, 2022 • Updated Aug 6, 2022

Related news

CVE-2022-21802: Snyk Vulnerability Database | Snyk

The package grapesjs before 0.19.5 are vulnerable to Cross-site Scripting (XSS) due to an improper sanitization of the class name in Selector Manager.