Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A DOM Clobbering vulnerability in tsup v8.3.4 allows attackers to execute arbitrary code via a crafted script in the import.meta.url to document.currentScript in cjs_shims.js components
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
tsup 跨站脚本漏洞
Vulnerability Description
tsup是EGOIST个人开发者的一个捆绑 TypeScript 库的最简单、最快的方法。 tsup v8.3.4版本存在安全漏洞,该漏洞源于import.meta.url到document.currentScript的DOM Clobbering,允许执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A