CVE-2026-65914
Published Jul 23, 2026DOMPurify before 3.3.2 contains a mutation-XSS vulnerability when sanitized HTML is reinserted into special parsing contexts using innerHTML with wrappers like script, xmp, iframe…
- evidence mentions
- 2
- Buzz score
- 17.5