almende / vis

⚠️ This project is not maintained anymore! Please go to https://github.com/visjs
7.86k stars 1.48k forks source link

Cross-Site Scripting DOM Input Validation and Representation #4290

Open Rohit272 opened 5 years ago

Rohit272 commented 5 years ago

Hi, We are using vis.js 4.20.1, on running the Fortify scan tool, We got the following error at: vis.min.js, line 29 (Cross-Site Scripting: DOM)

Issue Details Kingdom: Input Validation and Representation Scan Engine: SCA (Data Flow).

Is there any workaround or fix that can be applied here.

Thanks

Code.txt

mojoaxel commented 5 years ago

We are using vis.js 4.20.1, on running the Fortify scan tool, We got the following error at: vis.min.js, line 29 (Cross-Site Scripting: DOM)

Can you please scan the non-minified version ' vis.js' and provide more details about the security problem.