Open JohnMica opened 4 years ago
Vulnerable module: bootstrap Introduced through: eonasdan-bootstrap-datetimepicker@4.17.47 Exploit maturity: No known exploit Fixed in: 3.4.0, 4.0.0-beta.2
eonasdan-bootstrap-datetimepicker@4.17.47
3.4.0, 4.0.0-beta.2
.... Affected versions of this package are vulnerable to Cross-Site Scripting (XSS) via the data-target attribute. ...
just thought you could upgrade the dependencies perhaps ? not sure what other impact this would have, but hopefully none
Vulnerable module: bootstrap Introduced through:
eonasdan-bootstrap-datetimepicker@4.17.47
Exploit maturity: No known exploit Fixed in:3.4.0, 4.0.0-beta.2
just thought you could upgrade the dependencies perhaps ? not sure what other impact this would have, but hopefully none