First published: Sun Feb 23 2025(Updated: )
Versions of the package tarteaucitronjs before 1.17.0 are vulnerable to Cross-site Scripting (XSS) via the getElemWidth() and getElemHeight(). This is related to [SNYK-JS-TARTEAUCITRONJS-8366541](https://security.snyk.io/vuln/SNYK-JS-TARTEAUCITRONJS-8366541)
Credit: report@snyk.io
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.