Description
verdaccio before 3.12.0 allows XSS.
Remediation
References
https://github.com/verdaccio/verdaccio/security/advisories/GHSA-78j5-gcmf-vqc8
Related Vulnerabilities
CVE-2023-49210 Vulnerability in npm package openssl
CVE-2020-19698 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2022-23463 Vulnerability in maven package com.nepxion:discovery-commons
CVE-2011-1772 Vulnerability in maven package org.apache.struts.xwork:xwork-core
CVE-2020-7961 Vulnerability in maven package com.liferay.portal:portal-impl