CVE-2019-12313
Published
CVSS v3
N/A
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT
Description
XSS exists in Shave before 2.5.3 because output encoding is mishandled during the overwrite of an HTML element.
💈 Shave is a 0 dep JS plugin that truncates text to fit within an element based on a set max-height ✁