syncfusion-react-pivot-table
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecurityreferences/connecting-to-databases.md
MEDIUMSecurityMEDIUM
references/connecting-to-databases.md
No clear malware or intentional supply-chain attack is present. This is security guidance with a generally sound backend-intermediary pattern, but it contains several dangerous copy-paste examples: plaintext database credentials, unencrypted Elasticsearch HTTP, unrestricted CORS, localStorage token handling, and raw exception disclosure. These should be removed or clearly isolated from deployable code and replaced with secret management, HTTPS, strict CORS, safer token storage, and generic error responses.
Confidence: 98%Severity: 72%
Audit Metadata