automattic/zoninator is vulnerable to Cross-site Scripting (XSS)
58
Medium Risk
The admin zone page had multiple XSS surfaces where attacker-controlled post fields or URL-supplied error parameters could be injected into HTML mainly the post autocomplete was affected by this vulnerability.
You are affected if you are using a version that falls within the vulnerable range.
automattic/zoninator is vulnerable to Cross-site Scripting (XSS) in versions 0.0.1 - 0.10.2.
Upgrade the automattic/zoninator library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant