Description
verdaccio before 3.12.0 allows XSS.
Remediation
References
https://github.com/verdaccio/verdaccio/security/advisories/GHSA-78j5-gcmf-vqc8
Related Vulnerabilities
CVE-2023-38507 Vulnerability in npm package @strapi/plugin-users-permissions
CVE-2022-25901 Vulnerability in npm package cookiejar
CVE-2022-25967 Vulnerability in npm package eta
CVE-2023-22578 Vulnerability in npm package sequelize
CVE-2020-10758 Vulnerability in maven package org.keycloak:keycloak-wildfly-server-subsystem