Chamseddine Daaji
banner
d3j1x.bsky.social
Chamseddine Daaji
@d3j1x.bsky.social
ENTREPRENEUR
Reposted by Chamseddine Daaji
We just published an advisory for CVE-2025-32388, a moderate severity XSS vulnerability in SvelteKit. Please update to `@sveltejs/kit@2.20.6`.

The vulnerability affects applications that iterate over all search parameters inside a server `load` function. More details in the advisory 👇
XSS via tracked search_params
### Summary Unsanitized search param names cause XSS vulnerability. You are affected if you iterate over all entries of `event.url.searchParams` inside a server `load` function. Attackers can ex...
github.com
April 14, 2025 at 6:03 PM
Reposted by Chamseddine Daaji
a simple trick for better browser logs

#coding #WebDevelopment #javascript
April 7, 2025 at 9:02 PM
March 26, 2025 at 2:45 AM