Smoothiecharts is a focused charting and visualization library with a narrow product footprint that exposes a web-application attack surface centered on its Smoothie Charts component. The durable signal from reported vulnerabilities is rooted in improper input neutralization during client-side rendering, a weakness class typical of interactive JavaScript visualization libraries. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Smoothiecharts over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25929MEDIUM The package smoothie from 1.31.0 and before 1.36.1 are vulnerable to Cross-site Scripting (XSS) due to improper user input sanitization in strokeStyle and tooltipLabel properties. | Dec 21, 2022 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Smoothiecharts.
Media articles that mention a CVE ID that affects a product developed by Smoothiecharts — matched by CVE ID, not by vendor name.