Skip to content

Malicious code in Lottie-Player CDN files #254

@MrAhmedSayedAli

Description

@MrAhmedSayedAli

after i use
https://unpkg.com/@lottiefiles/lottie-player@latest/dist/lottie-player.js
or
https://cdn.jsdelivr.net/npm/@lottiefiles/lottie-player@2.0.5/dist/lottie-player.min.js

This popup opens on my site.

image

image

image

Metadata

Metadata

Assignees

No one assigned

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions