Vulnerabilities > Parall > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-07-06 CVE-2020-7691 Cross-site Scripting vulnerability in Parall Jspdf
In all versions of the package jspdf, it is possible to use <<script>script> in order to go over the filtering regex.
network
low complexity
parall CWE-79
6.1
2020-07-06 CVE-2020-7690 Cross-site Scripting vulnerability in Parall Jspdf
All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS).
network
low complexity
parall CWE-79
6.1