CVE-2020-27428
EUVD-2022-061206.01.2022, 00:15
A DOM-based cross-site scripting (XSS) vulnerability in Scratch-Svg-Renderer v0.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted sb3 file.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mit | scratch-svg-renderer | 0.2.0 |
𝑥
= Vulnerable software versions