This affects the package @scullyio/scully before 1.0.9. The transfer state is serialised with the JSON.stringify() function and then written into the HTML page.
Dedicated Forum to help removing adware, malware, spyware, ransomware, trojans, viruses and more!
More Stories
CVE-2020-35581 (envira_gallery)
CVE-2020-35582 (envira_gallery)
Appeals Court Vacates $4.3 Million HIPAA Penalty