Description
Versions of the package @excalidraw/excalidraw from 0.0.0 are vulnerable to Cross-site Scripting (XSS) via embedded links in whiteboard objects due to improper input sanitization.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2357 | Versions of the package @excalidraw/excalidraw from 0.0.0 are vulnerable to Cross-site Scripting (XSS) via embedded links in whiteboard objects due to improper input sanitization. |
Github GHSA |
GHSA-v7v8-gjv7-ffmr | @excalidraw/excalidraw Cross-site Scripting vulnerability |
References
History
Wed, 02 Oct 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-10-02T17:46:05.668Z
Reserved: 2023-02-20T10:28:48.926Z
Link: CVE-2023-26140
Updated: 2024-08-02T11:39:06.616Z
Status : Modified
Published: 2023-08-16T05:15:09.810
Modified: 2024-11-21T07:50:51.643
Link: CVE-2023-26140
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA