[bridged from https://infosec.exchange/@cure53 on the fediverse by https://fed.brid.gy/ ]
https://github.com/cure53/DOMPurify/releases/tag/3.3.0
Thanks again to everyone who contributed to and supported the project. ❤️
https://github.com/cure53/DOMPurify/releases/tag/3.3.0
Thanks again to everyone who contributed to and supported the project. ❤️
https://github.com/cure53/DOMPurify/pull/1150
https://github.com/cure53/DOMPurify/pull/1150
https://dompurify.com/
Please make sure to run dompurify.exe on Windows 11 for best possible experience and Full HD.
https://dompurify.com/
Please make sure to run dompurify.exe on Windows 11 for best possible experience and Full HD.
https://github.com/cure53/DOMPurify/releases/tag/3.2.7
Thanks to all folks who contributed 💕
https://github.com/cure53/DOMPurify/releases/tag/3.2.7
Thanks to all folks who contributed 💕
“I’ve been doing this long enough to know that most of the secrecy around security issues is just theater. All the ‘best practices’ like OpenSSF Scorecards are just an attempt by big […]
“I’ve been doing this long enough to know that most of the secrecy around security issues is just theater. All the ‘best practices’ like OpenSSF Scorecards are just an attempt by big […]
It just prevented a critical bug in an application we are currently testing.
https://github.com/whatwg/html/commit/e21bd3b4a94bfdbc23d863128e0b207be9821a0f
❤️ cc @freddy @securitymb
It just prevented a critical bug in an application we are currently testing.
https://github.com/whatwg/html/commit/e21bd3b4a94bfdbc23d863128e0b207be9821a0f
❤️ cc @freddy @securitymb
https://github.com/whatwg/html/commit/e21bd3b4a94bfdbc23d863128e0b207be9821a0f
https://github.com/whatwg/html/commit/e21bd3b4a94bfdbc23d863128e0b207be9821a0f
https://github.com/cure53/DOMPurify/releases/tag/3.2.6
Hopefully this will also help with the CI/CD issues that arose after the fake CVE was posted last week.
https://github.com/cure53/DOMPurify/releases/tag/3.2.6
Hopefully this will also help with the CI/CD issues that arose after the fake CVE was posted last week.
https://daniel.haxx.se/blog/2025/05/16/detecting-malicious-unicode/
https://daniel.haxx.se/blog/2025/05/16/detecting-malicious-unicode/
https://security.snyk.io/vuln/SNYK-JS-DOMPURIFY-10176060
Does anyone here has a personal contact at Snyk who might be able to help with getting rid of this?
https://security.snyk.io/vuln/SNYK-JS-DOMPURIFY-10176060
Does anyone here has a personal contact at Snyk who might be able to help with getting rid of this?
Just use Windows and set AI=On and all this will go away #securitytips #youarewelcome
Just use Windows and set AI=On and all this will go away #securitytips #youarewelcome
https://github.com/cure53/DOMPurify/releases/tag/3.2.5
Thanks to all folks who contributed 💕
https://github.com/cure53/DOMPurify/releases/tag/3.2.5
Thanks to all folks who contributed 💕
And, also fixing a conditional, config-depended and very smart bypass - related to the SAFE_FOR_TEMPLATES mode, thanks @nsysean 😍
https://github.com/cure53/DOMPurify/releases/tag/3.2.4
If you don't use […]
And, also fixing a conditional, config-depended and very smart bypass - related to the SAFE_FOR_TEMPLATES mode, thanks @nsysean 😍
https://github.com/cure53/DOMPurify/releases/tag/3.2.4
If you don't use […]