- Notifications
You must be signed in to change notification settings - Fork2k
Security: sveltejs/kit
Security
No security policy detected
This project has not set up aSECURITY.md file yet.
Report a vulnerability- Unescaped error message included on error pageGHSA-mh2x-fcqh-fmqv published
Nov 25, 2024 bybenmccannLow - XSS on dev mode 404 pageGHSA-rjjv-87mx-6x3h published
Nov 25, 2024 bybenmccannLow - Sending a GET or HEAD request with a body crashes SvelteKitGHSA-g5m6-hxpp-fc49 published
Jan 24, 2024 bybenmccannHigh - Insufficient CSRF protection for CORS requestsGHSA-gv7g-x59x-wf8f published
Apr 6, 2023 bybenmccannModerate - Insufficient Cross-Site Request Forgery ProtectionGHSA-5p75-vc5g-8rv2 published
Apr 4, 2023 bybenmccannCritical
Learn more about advisories related tosveltejs/kit in theGitHub Advisory Database