VYPR

npm package

anchorme

pkg:npm/anchorme

Vulnerabilities (1)

  • CVE-2021-23411Jul 21, 2021
    affected <= 2.1.2

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the main functionality. It accepts input that can result in the output (an anchor a tag) containing undesirable Javascript code that can be executed upon user interaction.