VYPR

TimelineJS3

by NUKnightLab

CVEs (1)

  • CVE-2020-15092Jul 9, 2020
    risk 0.00cvss epss 0.01

    In TimelineJS before version 3.7.0, some user data renders as HTML. An attacker could implement an XSS exploit with maliciously crafted content in a number of data fields. This risk is present whether the source data for the timeline is stored on Google Sheets or in a JSON…