16.4.2 (August 1, 2018)
React DOM Server
-
Fix a potential XSS vulnerability when the attacker controls an attribute name (
CVE-2018-6341). This fix is available in the latestreact-dom@16.4.2, as well as in previous affected minor versions:react-dom@16.0.1,react-dom@16.1.2, , and . ( in )