Description
In Materialize through 1.0.0, XSS is possible via the Autocomplete feature.
Remediation
References
https://github.com/Dogfalo/materialize/issues/6286
Related Vulnerabilities
CVE-2021-21368 Vulnerability in npm package msgpack5
CVE-2022-43413 Vulnerability in maven package org.jenkins-ci.plugins:job-import-plugin
CVE-2020-13942 Vulnerability in maven package org.apache.unomi:unomi-kar
CVE-2023-49395 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-25645 Vulnerability in maven package org.webjars.npm:dset