GHSA-cqp4-qqvg-3787
HIGHCVE-2026-45665A Stored Cross-Site Scripting (XSS) vulnerability exists in the Banner component due to an improper sanitization order (specifically, DOMPurify is executed before the marked library).
- Affected
- >=0, <0.8.0, <= 0.7.2
- Fixed in
- 0.8.0
- Weakness
- CWE-79
- Published
- 2026-05-14
- Source
- osv