OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:34
发布时间
2020-09-02 05:24
GitHub 审查时间
2020-09-01 02:34
NVD 发布时间
—
源文件
advisories/github-reviewed/2020/09/GHSA-hgr5-82rc-p936/GHSA-hgr5-82rc-p936.json
All versions of md-data-table are vulnerable to cross-site scripting (XSS). This vulnerability is exploitable if an attacker has control over data that is rendered by mdt-row
As there is no fix for this vulnerability at this time we recommend either selecting another package to perform this functionality or properly sanitizing all user data prior to rendering with md-data-table