Skip to content

feat(cve): add DOMPurify sanitizer bypass detection template (CVE-202…#16334

Open
Galaxy-sc wants to merge 3 commits into
projectdiscovery:mainfrom
Galaxy-sc:patch-2
Open

feat(cve): add DOMPurify sanitizer bypass detection template (CVE-202…#16334
Galaxy-sc wants to merge 3 commits into
projectdiscovery:mainfrom
Galaxy-sc:patch-2

Conversation

@Galaxy-sc

Copy link
Copy Markdown
Contributor

PR Information

Template validation

  • Validated with a host running a vulnerable version and/or configuration (True Positive)
  • Validated with a host running a patched version and/or configuration (avoid False Positive)

Additional Details

Multi-request pipeline template using flow logic to extract active JS bundle paths from the root DOM and scan for the unpatched selectedcontent layout within the DOMPurify framework scope. Tested locally on both vulnerable (3.4.4) and patched (3.4.5) environments without false positives.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants