VYPR

npm package

@quasar/quasar-ui-qmarkdown

pkg:npm/%40quasar/quasar-ui-qmarkdown

Vulnerabilities (1)

  • CVE-2025-43954Apr 20, 2025
    affected < 2.0.5fixed 2.0.5

    QMarkdown (aka quasar-ui-qmarkdown) before 2.0.5 allows XSS via headers even when when no-html is set.