Description
verdaccio before 3.12.0 allows XSS.
Remediation
References
https://github.com/verdaccio/verdaccio/security/advisories/GHSA-78j5-gcmf-vqc8
Related Vulnerabilities
CVE-2021-21366 Vulnerability in npm package xmldom
CVE-2022-38750 Vulnerability in maven package org.yaml:snakeyaml
CVE-2021-27191 Vulnerability in npm package get-ip-range
CVE-2023-34468 Vulnerability in maven package org.apache.nifi:nifi-hikari-dbcp-service
CVE-2022-24821 Vulnerability in maven package org.xwiki.platform:xwiki-platform-skin-skinx