1. HIGH Severity XSS Vulnerability Detected in homeschool-hero FileUpload Component
A high-severity cross-site scripting vulnerability has been flagged in the homeschool-hero codebase, specifically within the FileUpload.tsx component. CodeQL's automated security scanner identified the flaw at line 275 of the frontend file, where DOM text is being reinterpreted as HTML without proper escaping of meta-c...