Unknown · Dioxus Components · CVE-2026-24474
**Name of the Vulnerable Software and Affected Versions**
Dioxus Components versions prior to commit 41e4242ecb1062d04ae42a5215363c1d9fd4e23a
**Description**
The `use animated open` function in Dioxus Components improperly formats a string for use with the `eval` function, allowing a user-supplied `id` to be included. This could lead to arbitrary code execution.
**Recommendations**
Update to commit 41e4242ecb1062d04ae42a5215363c1d9fd4e23a or a later version.