VYPR

npm package

@finastra/ssr-pages

pkg:npm/%40finastra/ssr-pages

Vulnerabilities (2)

  • CVE-2022-24718Mar 1, 2022
    affected < 0.1.4fixed 0.1.4

    ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.4, a path traversal issue can occur when providing untrusted input to the `svg` property as an argument to the `build(MessagePageOptions)` function. While there is no known

  • CVE-2022-24717Mar 1, 2022
    affected < 0.1.5fixed 0.1.5

    ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.5, a cross site scripting (XSS) issue can occur when providing untrusted input to the `redirect.link` property as an argument to the `build(MessagePageOptions)` function. Wh