XSS via tracked search_params
### Summary
Unsanitized search param names cause XSS vulnerability. You are affected if you iterate over all entries of `event.url.searchParams` inside a server `load` function. Attackers can ex...
We just published an advisory for CVE-2025-32388, a moderate severity XSS vulnerability in SvelteKit. Please update to `@sveltejs/kit@2.20.6`.
The vulnerability affects applications that iterate over all search parameters inside a server `load` function. More details in the advisory π
14.04.2025 18:03 β π 45 π 8 π¬ 0 π 2
a simple trick for better browser logs
#coding #WebDevelopment #javascript
07.04.2025 21:02 β π 7 π 1 π¬ 0 π 0
#sveltx
SVELTEKIT + DAISYUI
FREE MODERN TEMPLATE
Live:
sveltx.vercel.app
Github:
github.com/SmrtMrktX/Sv...
Tags:
#sveltekit #daisyUi #webapps #freetemplates #contribute #Opensource #smx #SmrtMrktX
26.03.2025 02:44 β π 1 π 0 π¬ 0 π 0