VYPR

npm package

@github/paste-markdown

pkg:npm/%40github/paste-markdown

Vulnerabilities (1)

  • CVE-2021-37700Aug 12, 2021
    affected < 0.3.4fixed 0.3.4

    @github/paste-markdown is an npm package for pasting markdown objects. A self Cross-Site Scripting vulnerability exists in the @github/paste-markdown before version 0.3.4. If the clipboard data contains the string ``, a **div** is dynamically created, and the clipboard con