VYPR

npm package

sexstatic

pkg:npm/sexstatic

Vulnerabilities (1)

  • CVE-2018-3755Jun 1, 2018
    affected <= 0.6.2

    XSS in sexstatic <=0.6.2 causes HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with element used in directory name.