All vulnerabilities

GHSA-76mc-f452-cxcm

npm · dompurify

Summary

DOMPurify: Hook mutation of `data.allowedTags` / `data.allowedAttributes` permanently pollutes `DEFAULT_ALLOWED_TAGS` / `DEFAULT_ALLOWED_ATTR`

References