syncfusion-javascript-popups

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
references/dialog-templates.md

The fragment appears to be legitimate UI component documentation or sample code, not malware. It contains a clear DOM XSS security issue because user input is written to innerHTML without sanitization; textContent or a trusted sanitizer should be used instead. No evidence of supply-chain malware, data theft, persistence, or other malicious behavior is present in the shown code.

Confidence: 98%Severity: 62%
Audit Metadata
Analyzed At
Sep 17, 2026, 10:56 PM
Package URL
pkg:socket/skills-sh/syncfusion%2Fjavascript-ui-controls-skills%2Fsyncfusion-javascript-popups%2F@96eca8388d51d1d166dbbe6bb499224d64520c33d0df1bf327bc1fe545faa529
Security Audit — socket — syncfusion-javascript-popups