/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2025-26791

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2025-26791

CGA ID

CGA-62f7-r46p-jjcw

Severity

4.5

Medium

CVSS V3

Description

DOMPurify before 3.2.4 has an incorrect template literal regular expression, sometimes leading to mutation cross-site scripting (mXSS).

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images