Security: kepano/defuddle
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
HTML sanitizer skips <template> content, enabling mutation-XSS in returned contentGHSA-3cr7-rgx8-76c3 published
Sep 17, 2026 by kepanoModerate -
Stored XSS via unsanitized JSON-LD articleBody fallbackGHSA-wcqc-p9mh-prvm published
Aug 22, 2026 by kepanoModerate -
XSS via unescaped attribute interpolation in site extractorsGHSA-jg4p-g6xj-4qmf published
Jun 24, 2026 by kepanoHigh -
XSS via unescaped string interpolation in _findContentBySchemaText image tagGHSA-5mq8-78gm-pjmq published
Mar 5, 2026 by kepanoModerate
Learn more about advisories related to kepano/defuddle in the GitHub Advisory Database