Description
bracket-template suffers from reflected XSS possible when variable passed via GET parameter is used in template
Remediation
References
https://hackerone.com/reports/317125
Related Vulnerabilities
CVE-2022-21129 Vulnerability in npm package nemo-appium
CVE-2021-25924 Vulnerability in maven package cd.go.plugin:go-plugin-api
CVE-2021-44667 Vulnerability in maven package com.alibaba.nacos:nacos-common
CVE-2021-34371 Vulnerability in maven package org.neo4j:neo4j
CVE-2023-46659 Vulnerability in maven package org.jenkins-ci.plugins:trac