GHSA-5xgh-643p-cp2g

Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2018/11/GHSA-5xgh-643p-cp2g/GHSA-5xgh-643p-cp2g.json
Aliases
  • CVE-2018-17574
Published
2018-11-21T22:19:59Z
Modified
2022-09-21T22:28:56Z
Details

An issue was discovered in YMFE YApi 1.3.23. There is stored XSS in the name field of a project.

References

Affected packages

npm / yapi-vendor

yapi-vendor

Affected ranges

Type
SEMVER
Events
Introduced
0
Fixed
1.3.23

Affected versions