Mapbox.js versions 1.x before 1.6.6 and 2.x before 2.2.4 are vulnerable to a cross-site-scripting attack in certain uncommon usage scenarios via TileJSON name and map share control
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mapbox mapbox.js |