astro is vulnerable to Cross-site Scripting (XSS)
59
Medium Risk
AAffected versions of the package are vulnerable to Cross-site Scripting (XSS). If the application uses name="scripts", it will shadow the built-in document.scripts, potentially allowing an attacker to inject malicious scripts into the application.
You are affected if you are using a version that falls within the vulnerable range.
astro is vulnerable to Cross-site Scripting (XSS) in versions 3.2.0 - 4.16.0.
Upgrade the astro library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant