CVE-2019-16728
24.09.2019, 05:15
DOMPurify before 2.0.1 allows XSS because of innerHTML mutation XSS (mXSS) for an SVG element or a MATH element, as demonstrated by Chrome and Safari.
| Vendor | Product | Version |
|---|---|---|
| cure53 | dompurify | 𝑥 < 2.0.1 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases