DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify was vulnerable to prototype pollution. This vulnerability is fixed in 2.4.2.
2024-10-31T15:15:15.720
2025-11-03T21:16:31.143
Modified
CVSSv3.1: 9.1 (CRITICAL)