@angular/platform-server is vulnerable to Cross-Site Scripting (XSS)
86
High Risk
A Cross-Site Scripting (XSS) vulnerability exists in @angular/platform-server's DOM emulation dependency (domino) when serializing the content of raw-text elements (such as script>, style>, and iframe>).
You are affected if you are using a version that falls within the vulnerable range.
@angular/platform-server is vulnerable to Cross-Site Scripting (XSS) in versions 21.0.0 - 21.2.15, 20.0.0 - 20.3.23 and 0.0.0 - 19.2.24.
Upgrade the @angular/platform-server library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant