VYPR

Repostat

by Denpiligrim

CVEs (1)

  • CVE-2026-27612MedFeb 25, 2026
    risk 0.33cvss 6.1epss 0.00

    Repostat is a React component to fetch and display GitHub repository info. Prior to version 1.0.1, the `RepoCard` component is vulnerable to Reflected Cross-Site Scripting (XSS). The vulnerability occurs because the component uses React's `dangerouslySetInnerHTML` to render the…