Description
Cross-site Scripting (XSS) - DOM in NPM karma prior to 6.3.14.
Remediation
References
https://github.com/karma-runner/karma/commit/839578c45a8ac42fbc1d72105f97eab77dd3eb8a
https://huntr.dev/bounties/64b67ea1-5487-4382-a5f6-e8a95f798885
Related Vulnerabilities
CVE-2020-28196 Vulnerability in npm package krb5
CVE-2020-7709 Vulnerability in npm package json-pointer
CVE-2022-28150 Vulnerability in maven package com.synopsys.jenkinsci:ownership
CVE-2016-10577 Vulnerability in npm package ibm_db
CVE-2020-13954 Vulnerability in maven package org.apache.cxf:cxf-rt-transports-http