VYPR

npm package

highlight.run

pkg:npm/highlight.run

Vulnerabilities (1)

  • CVE-2023-33187May 26, 2023
    affected < 6.0.0fixed 6.0.0

    Highlight is an open source, full-stack monitoring platform. Highlight may record passwords on customer deployments when a password html input is switched to `type="text"` via a javascript "Show Password" button. This differs from the expected behavior which always obfuscates `ty