npm Alert
2425Warning Date
Severity Level
Warning Number
Target Sector
27 February, 2022
● High
2022-4442
All
npm has released security update to address a vulnerability in the following product:
- @awsui/components-react
- < 3.0.367
An attacker could exploit this vulnerability by conducting a cross-site scripting (XSS) attack.
The CERT team encourages users to review npm security advisory and apply the necessary update: