Skip to content

Bump dompurify version #8431

Description

@g1rly-c0d3r

Addresses Dependabot alerts #243-#245,#247-#249,#254,#265.

Older versions of dompurify are vulnerable to evaluating user-supplied expressions (CVE-2026-65900, CVE-2026-49458), XSS (CVE-2026-49459, CVE-2026-49978, CVE-2026-65899, CVE-2026-65898), and Global variable injection (CVE-2026-65902)

Metadata

Metadata

Assignees

No one assigned

    Labels

    dependenciesPull requests that update a dependency filejavascriptPull requests that update Javascript code

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions