Description
bracket-template suffers from reflected XSS possible when variable passed via GET parameter is used in template
Remediation
References
https://hackerone.com/reports/317125
Related Vulnerabilities
CVE-2022-36896 Vulnerability in maven package com.compuware.jenkins:compuware-scm-downloader
CVE-2020-7753 Vulnerability in npm package trim
CVE-2021-23438 Vulnerability in npm package mpath
CVE-2021-3918 Vulnerability in npm package json-schema
CVE-2021-31408 Vulnerability in maven package com.vaadin:flow-client