DOMPurify IN_PLACE mode Clobbering check bypass leading to XSS
Security Advisory
High
DOMPurify
Affected:
- DOMPurify < IN_PLACE mode fix
Fixed in:
- DOMPurify with fix #1391 (commit 7996f1d)
Referenced CVEs:
CVE-2026-65902 · 6.1
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.