add-to-calendar-button is vulnerable to Prototype Pollution
50
Medium Risk
Affected versions of the add-to-calendar-button package are vulnerable to prototype pollution, which may lead to Cross-site Scripting (XSS).
You are affected if you use a vulnerable version of add-to-calendar-button.
add-to-calendar-button is vulnerable to Prototype Pollution in versions 1.0.1 - 2.6.17.
Upgrade add-to-calendar-button to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant