OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:29
发布时间
2019-05-31 05:03
GitHub 审查时间
2019-05-31 05:02
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/05/GHSA-jj6g-7j8p-7gf2/GHSA-jj6g-7j8p-7gf2.json
All versions of bracket-template are vulnerable to stored cross-site scripting (XSS). This is exploitable when a variable passed in via a GET parameter is used in a template.
No fix is currently available for this vulnerability. It is our recommendation to not install or use this module at this time.