Severity: moderate

    Cross-site scripting in jspdf

    jspdf

    Overview

    In jspdf before version 2.0.0 it is possible to inject JavaScript code via the html method.

    Remediation

    Upgrade to version 2.0.0 or later

    Resources

    Have content suggestions? Visit npmjs.com/support.

    Advisory timeline

    1. published

      Advisory Published
      May 17th, 2021
    2. reported

      Reported by Anonymous
      May 17th, 2021