Description
verdaccio before 3.12.0 allows XSS.
Remediation
References
https://github.com/verdaccio/verdaccio/security/advisories/GHSA-78j5-gcmf-vqc8
Related Vulnerabilities
CVE-2022-0528 Vulnerability in npm package @uppy/companion
CVE-2021-22964 Vulnerability in npm package fastify-static
CVE-2021-23440 Vulnerability in npm package set-value
CVE-2022-25767 Vulnerability in maven package com.bstek.ureport:ureport2-console
CVE-2022-22984 Vulnerability in npm package snyk-python-plugin