Description
There is a stored Cross-Site Scripting vulnerability in Open Graph meta properties read by the `metascrape` npm module <= 3.9.2.
Remediation
References
https://hackerone.com/reports/309367
Related Vulnerabilities
CVE-2021-23358 Vulnerability in npm package underscore
CVE-2021-33611 Vulnerability in maven package org.webjars.bowergithub.vaadin:vaadin-menu-bar
CVE-2020-12265 Vulnerability in maven package org.webjars.npm:decompress-tar
CVE-2021-23632 Vulnerability in npm package git
CVE-2017-18197 Vulnerability in maven package org.webjars.bower:mxgraph