|Category:||Debian Local Security Checks|
|Title:||Debian LTS: Security Advisory for dompurify.js (DLA-2419-1)|
|Summary:||The remote host is missing an update for the 'dompurify.js'; package(s) announced via the DLA-2419-1 advisory.|
The remote host is missing an update for the 'dompurify.js'
package(s) announced via the DLA-2419-1 advisory.
Two issues have been found in dompurify.js, an XSS sanitizer for HTML,
MathML and SVG.
Both issues are related to mXSS issues in SVG- or MATH-elements.
'dompurify.js' package(s) on Debian Linux.
For Debian 9 stretch, these problems have been fixed in version
We recommend that you upgrade your dompurify.js packages.
Common Vulnerability Exposure (CVE) ID: CVE-2019-16728|
Common Vulnerability Exposure (CVE) ID: CVE-2020-26870
|Copyright||Copyright (C) 2020 Greenbone Networks GmbH|
|This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.