CVE-2022-25646 Information
Aug 31, 2022
cve
Description
All versions of package x-data-spreadsheet are vulnerable to Cross-site Scripting (XSS) due to missing sanitization of values inserted into the cells.
Reference
https://security.snyk.io/vuln/SNYK-JS-XDATASPREADSHEET-2430381 https://github.com/myliang/x-spreadsheet/issues/580 https://youtu.be/Ij-8VVKNh7U
Share on: