/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-gc5j-mcfj-2h67

Published

Last updated

https://images.chainguard.dev/security/CGA-gc5j-mcfj-2h67
Package

opensearch-dashboards-2

RepositoryWolfi
Latest Update
Pending upstream fix
Aliases
  • CVE-2024-53382
  • GHSA-x7hr-w5r2-h6wg

Severity

Unknown

Summary

PrismJS DOM Clobbering vulnerability

Description

Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be shadowed by attacker-injected HTML elements.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs