frontend-ui-ux-wizard
Warn
Audited by Socket on Sep 19, 2026
1 alert found:
AnomalyAnomalyreferences/component-library/text-effects.md
LOWAnomalyLOW
references/component-library/text-effects.md
The code is primarily legitimate UI animation code and shows no evidence of malware, credential theft, exfiltration, persistence, or system sabotage. FallingText contains a concrete DOM-based XSS risk because it writes component-controlled values to innerHTML without escaping or sanitization. Continuous rendering and cleanup issues create moderate performance and integration concerns. Replace innerHTML with React-rendered spans or sanitize all interpolated values, especially text and highlightClass.
Confidence: 98%Severity: 62%
Audit Metadata