Skip to content

Conversation

@snieguu
Copy link

@snieguu snieguu commented Nov 24, 2025

Description

Update dompurify to 3.3.0 version, as the used one is vulnerable with https://nvd.nist.gov/vuln/detail/CVE-2025-26791(False Positive for dependency-track because required custom setup of dompurify)

Checklist

Signed-off-by: Damian Sniezek <[email protected]>
@owasp-dt-bot
Copy link

Snyk checks have passed. No issues have been found so far.

Status Scanner Critical High Medium Low Total (0)
Open Source Security 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@nscuro nscuro added this to the 4.14.0 milestone Nov 27, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants