sanitize-html-react icon indicating copy to clipboard operation
sanitize-html-react copied to clipboard

⚠️ THIS PACKAGE IS VULNERABLE. DO NOT USE! ⚠️

Open mobeigi opened this issue 5 years ago • 1 comments

This package is outdated and vulnerable.

Write up: https://mobeigi.com/blog/security/xss/sanitize-html-react-vulnerability/

mobeigi avatar Nov 21 '20 07:11 mobeigi

@zacharystenger Hi, you should take down the package / deprecate it as its no longer maintained but widely used due to its name.

mobeigi avatar Nov 21 '20 08:11 mobeigi