A vulnerability has been found in Cure53 DOMPurify up to 3.3.3 and classified as problematic. This issue affects the function DOMPurify.sanitize. The manipulation leads to cross site scripting.

This vulnerability is referenced as CVE-2026-65911. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.