W3C · Class-Validator · CVE-2020-4070
**Name of the Vulnerable Software and Affected Versions**
CSS Validator versions prior to commit e5c09a9
**Description**
The issue is related to a cross-site scripting vulnerability in handling URIs. It can be triggered when a user clicks on a specifically crafted validator link.
**Recommendations**
For versions prior to commit e5c09a9, update to a version that includes the patch from commit e5c09a9 to resolve the issue.