Description
stored xss due to unsantized anchor url in GitHub repository alvarotrigo/fullpage.js prior to 4.0.4. stored xss .
Remediation
References
https://github.com/alvarotrigo/fullpage.js/commit/e7a5db42711700c8a584e61b5e532a64039fe92b
https://huntr.dev/bounties/08d2a6d0-772f-4b05-834e-86343f263c35
Related Vulnerabilities
CVE-2021-3190 Vulnerability in npm package async-git
CVE-2022-25929 Vulnerability in npm package smoothie
CVE-2022-23539 Vulnerability in npm package jsonwebtoken
CVE-2021-3827 Vulnerability in maven package org.keycloak:keycloak-server-spi-private
CVE-2021-29262 Vulnerability in maven package org.apache.solr:solr-core