Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2020-26870
HistoryOct 07, 2020 - 4:15 p.m.

CVE-2020-26870

2020-10-0716:15:00
Debian Security Bug Tracker
security-tracker.debian.org
33
cure53
dompurify
mutation xss
html
mathml
namespace change

EPSS

0.01

Percentile

83.7%

Cure53 DOMPurify before 2.0.17 allows mutation XSS. This occurs because a serialize-parse roundtrip does not necessarily return the original DOM tree, and a namespace can change from HTML to MathML, as demonstrated by nesting of FORM elements.

OSVersionArchitecturePackageVersionFilename
Debian9alldompurify.js< 0.8.2~dfsg1-1dompurify.js_0.8.2~dfsg1-1_all.deb