UIs: investigate XSS vulnerability with v-html
Open
ENTITY - DO NOT USE
Priority2
security
techdebt
- Dominant language
- JavaScript
- Stars
- 23
- Forks
- 62
- Avg merge
- 24m
- Merged PRs (30d)
- 1
Description
SonarCloud identified the following issue.
We control the content of the v-html value (which is fetched via an API call) though it may possible for a bad actor to inject malicious code here... I'm not sure, and I'm not sure what the risk is. I also don't know how to work around this (needs research).

Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.