pkg:npm/clevertap-web-sdk

2 total CVEsHIGH2

✅ Check your installed version

All known vulnerabilities

  • HIGH8.3CVE-2026-26861CleverTap Web SDK is vulnerable to DOM-based XSS via handleCustomHtmlPreviewPostMessageEvent function
    from 0, < 1.15.3
  • HIGH8.3CVE-2026-26862CleverTap Web SDK is vulnerable to DOM-based Cross-Site Scripting (XSS) via window.postMessage
    from 0, < 1.15.3