Total vulnerabilities in the database
DOMPurify before 2.0.1 allows XSS because of innerHTML mutation XSS (mXSS) for an SVG element or a MATH element, as demonstrated by Chrome and Safari.
Software | From | Fixed in |
---|---|---|
cure53 / dompurify | - | 2.0.1 |
debian / debian_linux | 9.0 | 9.0.x |
![]() |
- | 2.0.3 |