echarts is vulnerable to Cross-site Scripting
60
Medium Risk
Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the tooltip of charts.
You are affected if you use a vulnerable version of the package and pass user input to the chart's tooltip (directly or indirectly, such as via a different component).
echarts is vulnerable to Cross-site Scripting in versions 2.2.8 - 5.5.0.
Upgrade echarts to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant