VendorsPlotlyplotly.jsall versions
Vulnerabilities

Plotly Plotly.js

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-46308
In Plotly plotly.js before 2.25.2, plot API calls have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.
Published 2024-01-03 · Modified
9.8EPSS 0.009
CVE-2017-1000006
Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.
Published 2017-07-13 · Modified
6.1EPSS 0.009