CVE-2020-7690
06.07.2020, 13:15
All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS). It is possible to inject JavaScript code via the html method.
Vendor | Product | Version |
---|---|---|
parall | jspdf | 𝑥 < 2.0.0 |
𝑥
= Vulnerable software versions