2017-01-23 21:00:00
mitre
PUBLISHED
The validator package before 2.0.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter via hex-encoded characters.