Skip to content

Vulnerability with send <0.19 #293

@pserena-iterpro

Description

@pserena-iterpro

One of my dependencies uses swagger-stats, and lately one of his dependencies has been marked as vulnerable. Here the details:

send  <0.19.0
send vulnerable to template injection that can lead to XSS - https://github.com/advisories/GHSA-m6fv-jmcg-4jfg

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions