QID 981043
QID 981043: Nodejs (npm) Security Update for valine (GHSA-hhrp-qm88-xjr3)
An issue was discovered in Valine v1.3.3. It allows HTML injection, which can be exploited for JavaScript execution via an EMBED element in conjunction with a .pdf file.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hhrp-qm88-xjr3 for updates pertaining to this vulnerability.
Vendor References
- GHSA-hhrp-qm88-xjr3 -
github.com/advisories/GHSA-hhrp-qm88-xjr3
CVEs related to QID 981043
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hhrp-qm88-xjr3 | valine |
|