CodeSeven / toastr

Simple javascript toast notifications
http://www.toastrjs.com
MIT License
11.96k stars 2.04k forks source link

fixed xss vulnerability #684

Closed dmarov closed 2 years ago

dmarov commented 2 years ago

Severe XSS vulnerability was discovered. More here https://security.snyk.io/vuln/SNYK-JS-TOASTR-2396430. Probably need to release it with incremented major version.

dmarov commented 2 years ago

Done, opened new PR

On Mon, Mar 7, 2022, 19:35 GaroLuis @.***> wrote:

@dmarov https://github.com/dmarov Could you change the origin branch from master to develop?

I need this and Requests must be made against the develop branch. Pull requests submitted against the master branch will not be considered.

— Reply to this email directly, view it on GitHub https://github.com/CodeSeven/toastr/pull/684#issuecomment-1060886704, or unsubscribe https://github.com/notifications/unsubscribe-auth/AEC6RUWESKXNIO5HKLCXUVDU6YV3ZANCNFSM5QDDIYJA . Triage notifications on the go with GitHub Mobile for iOS https://apps.apple.com/app/apple-store/id1477376905?ct=notification-email&mt=8&pt=524675 or Android https://play.google.com/store/apps/details?id=com.github.android&referrer=utm_campaign%3Dnotification-email%26utm_medium%3Demail%26utm_source%3Dgithub.

You are receiving this because you were mentioned.Message ID: @.***>