Description
verdaccio before 3.12.0 allows XSS.
Remediation
References
https://github.com/verdaccio/verdaccio/security/advisories/GHSA-78j5-gcmf-vqc8
Related Vulnerabilities
CVE-2021-21179 Vulnerability in maven package org.webjars.npm:electron
CVE-2010-1622 Vulnerability in maven package org.springframework:spring
CVE-2021-29469 Vulnerability in npm package redis
CVE-2022-43402 Vulnerability in maven package org.jenkins-ci.plugins.workflow:workflow-cps
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core-api