Critical0
High2
Medium0
Exploited (KEV)0
All recent CVEs
| CVE | CVSS | Severity | Product | Summary | Published |
|---|---|---|---|---|---|
| CVE-2026-47423 | 8.2 | high | dompurify | DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. | 53d ago |
| CVE-2026-65898 | 7.2 | high | dompurify | DOMPurify before 3.4.11 fails to clone the ALLOWED_ATTR allowlist when setConfig() is used with an uponSanitizeAtt | 45d ago |