Description
Cross-site Scripting (XSS) - DOM in NPM karma prior to 6.3.14.
Remediation
References
https://huntr.dev/bounties/64b67ea1-5487-4382-a5f6-e8a95f798885
https://github.com/karma-runner/karma/commit/839578c45a8ac42fbc1d72105f97eab77dd3eb8a
Related Vulnerabilities
CVE-2022-25855 Vulnerability in npm package create-choo-app3
CVE-2018-9207 Vulnerability in maven package org.webjars:jquery-file-upload
CVE-2023-26139 Vulnerability in npm package underscore-keypath
CVE-2022-37264 Vulnerability in npm package steal
CVE-2023-38493 Vulnerability in maven package com.linecorp.armeria:armeria