Skip to main content
Loading…
    CVE-2026-30830 — Defuddle cleans up HTML pages. Prior to version 0.9.0, the _findContentBySchemaText method in src/defuddle.ts interpolates image src and alt attributes directly into an HTML string without escaping. A — CVE Database · The Intelligence Room