bootbox icon indicating copy to clipboard operation
bootbox copied to clipboard

CVE-2023-46998 from 3.2.0 to 6.0.0 | Fix Plan

Open Lam1109 opened this issue 8 months ago • 2 comments

Dear Bootbox development community,

May I know if we have any plan to fix CVE-2023-46998? And may I know the ETA of the new release?

Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through 6.0 allows a remote attacker to execute arbitrary code via a crafted payload to alert(), confirm(), prompt() functions.

Appreciate your feedback.

Lam1109 avatar Jun 07 '24 02:06 Lam1109