VYPR

npm package

@shopify/hydrogen

pkg:npm/%40shopify/hydrogen

Vulnerabilities (1)

  • CVE-2022-29230May 18, 2022
    affected >= 0.10.0, < 0.19.0fixed 0.19.0

    Hydrogen is a React-based framework for building dynamic, Shopify-powered custom storefronts. There is a potential Cross-Site Scripting (XSS) vulnerability where an arbitrary user is able to execute scripts on pages that are built with Hydrogen. This affects all versions of Hydro