syncfusion-react-markdown-converter

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Anomaly
AnomalyLOW
references/configurable-options.md

No evidence of supply-chain malware or intentionally malicious behavior is present. The React example contains a potential application-level XSS risk because user-controlled Markdown is rendered through dangerouslySetInnerHTML without an explicitly demonstrated sanitizer. The actual severity depends on MarkdownConverter's HTML sanitization behavior and application context; callers should sanitize the generated HTML with a trusted HTML sanitizer before insertion.

Confidence: 97%Severity: 55%
Audit Metadata
Analyzed At
Sep 16, 2026, 04:20 AM
Package URL
pkg:socket/skills-sh/syncfusion%2Freact-ui-components-skills%2Fsyncfusion-react-markdown-converter%2F@54ab0b9f3545fb83bb3afb151d05156941b3663203e2202f42cc30df3ff759e9
Security Audit — socket — syncfusion-react-markdown-converter