DOMPurify v2.0.8 Release Notes
Release Date: 2020-02-03 // about 4 years ago-
- Fixed a bypass that can be abused in case
SAFE_FOR_JQUERY
is used with jQuery 3.x, thanks @masatokinugawa ๐โโ - โ Added new elements to whitelist, thanks @chris-morgan
- โ Added first layer of prototype poisoning protection, thanks @dejang
- โ Added better controls for
uponSanitizeAttribute
, thanks @devinrhode2 - โ Added demo for node removal, thanks @mikesnare
- Fixed a bypass that can be abused in case