CVE-2020-28470
14.01.2021, 10:15
This affects the package @scullyio/scully before 1.0.9. The transfer state is serialised with the JSON.stringify() function and then written into the HTML page.
Vendor | Product | Version |
---|---|---|
scully | scully | 𝑥 < 1.0.9 |
𝑥
= Vulnerable software versions