pkg:npm/@kindspells/astro-shield

2 total CVEsHIGH2

✅ Check your installed version

All known vulnerabilities

  • HIGH7.5CVE-2024-30250In Astro-Shield, setting a correct `integrity` attribute to injected code allows to bypass the allow-lists
    >= 1.2.0, < 1.3.2
  • HIGH7.5CVE-2024-29896Content-Security-Policy header generation in middleware could be compromised by malicious injections
    >= 1.2.0, < 1.3.0