CVE-2025-26791
EUVD-2025-424514.02.2025, 09:15
DOMPurify before 3.2.4 has an incorrect template literal regular expression, sometimes leading to mutation cross-site scripting (mXSS).
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cure53 | dompurify | 𝑥 < 3.2.4 |
𝑥
= Vulnerable software versions
Debian Releases