GSA / smartpay-training

Prototype for new GSA SmartPay training quizzes
8 stars 4 forks source link

Static Code Vulnerability: Vulnerability Contained in USWDS Library #697

Open JennaySDavis opened 1 week ago

JennaySDavis commented 1 week ago

Rule Name: js/incomplete-sanitization Rule’s Description: This does not escape backslash characters in the input. Level: High Location: (URI) public/js/uswds.js Comments: This vulnerability is contained within the USWDS library. When USWDS is updated in the package, the SmartPay Training application will be updated.