Description
Cross-site Scripting (XSS) - Stored in GitHub repository amauric/tarteaucitron.js prior to v1.13.1.
Remediation
References
https://github.com/amauric/tarteaucitron.js/commit/c4c2fcf2b2212ce968bdcae145bb74283c441e5f
https://huntr.dev/bounties/a0fd0671-f051-4d41-8928-9b19819084c9
Related Vulnerabilities
CVE-2013-7285 Vulnerability in maven package org.jbehave:jbehave-core
CVE-2017-11467 Vulnerability in maven package com.orientechnologies:orientdb-core
CVE-2018-1002203 Vulnerability in npm package unzipper
CVE-2017-16007 Vulnerability in npm package node-jose
CVE-2021-27515 Vulnerability in maven package org.webjars.bowergithub.unshiftio:url-parse