Description
docsify 4.12.1 is affected by Cross Site Scripting (XSS) because the search component does not appropriately encode Code Blocks and mishandles the " character.
Remediation
References
https://github.com/docsifyjs/docsify/issues/1549
Related Vulnerabilities
CVE-2022-31195 Vulnerability in maven package org.dspace:dspace-api
CVE-2020-26301 Vulnerability in npm package ssh2
CVE-2020-26217 Vulnerability in maven package org.jvnet.hudson:xstream
CVE-2020-15231 Vulnerability in maven package org.mapfish.print:print-lib
CVE-2024-36401 Vulnerability in maven package org.geoserver:gs-wfs