VYPR

npm package

@tanstack/react-query-next-experimental

pkg:npm/%40tanstack/react-query-next-experimental

Vulnerabilities (1)

  • CVE-2024-24558Jan 30, 2024
    affected >= 5.0.0, < 5.18.0fixed 5.18.0

    TanStack Query supplies asynchronous state management, server-state utilities and data fetching for the web. The `@tanstack/react-query-next-experimental` NPM package is vulnerable to a cross-site scripting vulnerability. To exploit this, an attacker would need to either inject