A vulnerability, which was classified as problematic, has been found in Milkdown up to 7.21.2. This issue affects the function
DOMPurify.sanitize of the file edit-view.ts of the component Link-Tooltip Preview Component. Performing a manipulation results in cross site scripting.
This vulnerability was named CVE-2026-57530. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.