@contentstack/utils is vulnerable to Improper Neutralization of Script-Related HTML Tags
50
Medium Risk
Affected versions of @contentstack/utils are vulnerable to HTML injection in attribute keys and values. An attacker can inject malicious HTML, potentially leading to unintended behavior or further exploitation, depending on how the injected content is processed.
You are affected if you use a vulnerable version of craft-retour.
@contentstack/utils is vulnerable to Improper Neutralization of Script-Related HTML Tags in versions 1.0.0 - 1.3.18.
Upgrade @contentstack/utils to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant