← Back

Tagify

tagify

Vendor: Tagify Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tagify Project
1Tagify
Jun 17, 2026
Apr 29, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
This affects the package @yaireo/tagify before 4.9.8. The package is used for rendering UI components inside the input or text fields, and an attacker can pass a malicious placeholder value to it to fire the XSS payload.