Description
In Materialize through 1.0.0, XSS is possible via the Tooltip feature.
Remediation
References
https://github.com/Dogfalo/materialize/issues/6286
Related Vulnerabilities
CVE-2020-13110 Vulnerability in npm package kerberos
CVE-2021-23380 Vulnerability in npm package roar-pidusage
CVE-2020-8203 Vulnerability in npm package @sailshq/lodash
CVE-2023-3691 Vulnerability in maven package org.webjars.bowergithub.layui:layui
CVE-2021-29446 Vulnerability in npm package jose-node-cjs-runtime