VYPR

core

by Stenciljs

CVEs (2)

  • CVE-2026-79320MedSep 21, 2026
    risk 0.40cvss 6.1epss 0.00

    Stencil core 4.43.5 contains a DOM-based cross-site scripting (XSS) vulnerability in the component runtime. When a downstream application enables the experimental slot fixes option and uses scoped components, assigning a string to the textContent property of such a component's…

  • CVE-2026-79319MedSep 21, 2026
    risk 0.34cvss 5.3epss 0.00

    Stencil core 4.43.5 is vulnerable to Incorrect Access Control.