DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify was vulnerable to prototype pollution. This vulnerability is fixed in 2.4.2.
2024-10-31T15:15:15.720
2025-09-23T02:01:59.903
Analyzed
CVSSv3.1: 9.1 (CRITICAL)