analise-swot
Warn
Audited by Socket on Sep 23, 2026
1 alert found:
AnomalyAnomalyscripts/gerar-swot-visual.py
LOWAnomalyLOW
scripts/gerar-swot-visual.py
No clear malware behavior is present. However, untrusted Markdown content is embedded into HTML and JavaScript without escaping, creating a stored XSS risk when the generated report is opened. Use context-appropriate escaping or safe DOM text APIs, and avoid constructing HTML with untrusted strings.
Confidence: 98%Severity: 64%
Audit Metadata