syncfusion-javascript-chat-ui
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
AnomalyAnomalyreferences/templates.md
LOWAnomalyLOW
references/templates.md
No evidence of intentional malware or supply-chain sabotage is present. The primary security concern is potential cross-site scripting in the unsanitized template examples because runtime message, user, and suggestion values are inserted directly into HTML. The provided escapeHtml example demonstrates an appropriate mitigation, but it should be applied consistently to all untrusted values and attributes.
Confidence: 99%Severity: 58%
Audit Metadata