Skip to main content
Loading…
    CVE-2025-15599 — DOMPurify 3.1.3 through 3.2.6 and 2.5.3 through 2.5.8 contain a cross-site scripting vulnerability that allows attackers to bypass attribute sanitization by exploiting missing textarea rawtext element — CVE Database · The Intelligence Room