VYPR

Striptags

by Ericnorris

Source repositories

CVEs (1)

  • CVE-2021-32696Jun 18, 2021
    risk 0.00cvss epss 0.01

    The npm package "striptags" is an implementation of PHP's strip_tags in Typescript. In striptags before version 3.2.0, a type-confusion vulnerability can cause `striptags` to concatenate unsanitized strings when an array-like object is passed in as the `html` parameter. This can…