VYPR

Nuclide

by Facebook

Source repositories

CVEs (1)

  • CVE-2018-6333Dec 31, 2018
    risk 0.00cvss epss 0.01

    The hhvm-attach deep link handler in Nuclide did not properly sanitize the provided hostname parameter when rendering. As a result, a malicious URL could be used to render HTML and other content inside of the editor's context, which could potentially be chained to lead to code…