CVE-2023-32325
27.05.2023, 00:15
PostHog-js is a library to interface with the PostHog analytics tool. Versions prior to 1.57.2 have the potential for cross-site scripting. Problem has been patched in 1.57.2. Users are advised to upgrade. Users unable to upgrade should ensure that their Content Security Policy is in place.
Vendor | Product | Version |
---|---|---|
posthog | posthog-js | 𝑥 < 1.57.2 |
𝑥
= Vulnerable software versions
References