CVE-2019-16728
24.09.2019, 05:15
DOMPurify before 2.0.1 allows XSS because of innerHTML mutation XSS (mXSS) for an SVG element or a MATH element, as demonstrated by Chrome and Safari.
Vendor | Product | Version |
---|---|---|
cure53 | dompurify | 𝑥 < 2.0.1 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases