CVE-2024-48910

Publication date 31 October 2024

Last updated 6 November 2024


Ubuntu priority

DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify was vulnerable to prototype pollution. This vulnerability is fixed in 2.4.2.

Status

Package Ubuntu Release Status
node-dompurify 24.10 oracular
Not affected
24.04 LTS noble
Not affected
22.04 LTS jammy
Needs evaluation
20.04 LTS focal Not in release