syncfusion-react-markdown-converter
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalyreferences/configurable-options.md
LOWAnomalyLOW
references/configurable-options.md
No evidence of supply-chain malware or intentionally malicious behavior is present. The React example contains a potential application-level XSS risk because user-controlled Markdown is rendered through dangerouslySetInnerHTML without an explicitly demonstrated sanitizer. The actual severity depends on MarkdownConverter's HTML sanitization behavior and application context; callers should sanitize the generated HTML with a trusted HTML sanitizer before insertion.
Confidence: 97%Severity: 55%
Audit Metadata