GHSA-g688-7j3c-h9f3, CVE-2022-31290
packagist/idno/known
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
A cross-site scripting (XSS) vulnerability in Known v1.2.2+2020061101 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Your Name text field.
All versions up to 1.3.1
Unfortunately, there is no solution available yet.
2022-07-26
source |