Skip to content

DOMPurify contains a Cross-site Scripting vulnerability #3963

Description

@mich1991

Hi! As mentioned in the title Dompurify has vulnerabilities in version 3.3.1. I believe upgrading it to minimum 3.3.2 should fix the issue.

Hopefully it would be a quick fix.

Fix mentioned in DOMPurify release notes.
https://github.com/cure53/DOMPurify/releases/tag/3.3.2

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions