GHSA-xfmw-9xm9-7q4jCritical
Pocket through 8.33.0.0 allows XSS because "Save to Pocket" injects external HTML into the DOM. ...
🔗 CVE IDs covered (1)
📋 Description
Pocket through 8.33.0.0 allows XSS because "Save to Pocket" injects external HTML into the DOM. JavaScript code can alter the application state via native bridge methods.