You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
While running npm audit, I encountered a high severity vulnerability in the rollup package bundled within your dependency chain.
Vulnerability: DOM Clobbering Gadget in rollup bundled scripts that leads to XSS
Severity: High
Affected Package: rollup (<2.79.2)
Fix: Upgrade to >=2.79.2
Advisory: GHSA-gcx4-mw62-g8wm
Reproduction link / 复现链接
No response
Steps to Reproduce the Bug or Issue / 重现步骤
No response
Version / 版本
🆕 5.x
OS / 操作系统
macOS
Windows
Linux
Others / 其他
Browser / 浏览器
Chrome
Edge
Firefox
Safari (Limited support / 有限支持)
IE (Nonsupport / 不支持)
Others / 其他
The text was updated successfully, but these errors were encountered:
Describe the bug / 问题描述
Hi team,
While running npm audit, I encountered a high severity vulnerability in the rollup package bundled within your dependency chain.
Vulnerability: DOM Clobbering Gadget in rollup bundled scripts that leads to XSS
Severity: High
Affected Package: rollup (<2.79.2)
Fix: Upgrade to >=2.79.2
Advisory: GHSA-gcx4-mw62-g8wm
Reproduction link / 复现链接
No response
Steps to Reproduce the Bug or Issue / 重现步骤
No response
Version / 版本
🆕 5.x
OS / 操作系统
Browser / 浏览器
The text was updated successfully, but these errors were encountered: