Skip to content
Navigation Menu
Toggle navigation
Sign in
Product
Actions
Automate any workflow
Packages
Host and manage packages
Security
Find and fix vulnerabilities
Codespaces
Instant dev environments
GitHub Copilot
Write better code with AI
Code review
Manage code changes
Issues
Plan and track work
Discussions
Collaborate outside of code
Explore
All features
Documentation
GitHub Skills
Blog
Solutions
By size
Enterprise
Teams
Startups
By industry
Healthcare
Financial services
Manufacturing
By use case
CI/CD & Automation
DevOps
DevSecOps
Resources
Topics
AI
DevOps
Security
Software Development
View all
Explore
Learning Pathways
White papers, Ebooks, Webinars
Customer Stories
Partners
Open Source
GitHub Sponsors
Fund open source developers
The ReadME Project
GitHub community articles
Repositories
Topics
Trending
Collections
Enterprise
Enterprise platform
AI-powered developer platform
Available add-ons
Advanced Security
Enterprise-grade security features
GitHub Copilot
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search or jump to...
Search code, repositories, users, issues, pull requests...
Search syntax tips
Provide feedback
Saved searches
Use saved searches to filter your results more quickly
Sign in
Sign up
Reseting focus
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
cure53
/
DOMPurify
Public
Notifications
You must be signed in to change notification settings
Fork
701
Star
13.7k
Code
Issues
2
Pull requests
0
Actions
Projects
0
Wiki
Security
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Wiki
Security
Insights
Commits
Branch selector
main
User selector
cure53
Datepicker
All time
Commit History
Commits on Sep 17, 2024
Merge pull request
#993
from cure53/dependabot/npm_and_yarn/body-parser-1.20.3
cure53
committed
Sep 17, 2024
50ea515
Commits on Sep 5, 2024
Merge pull request
#990
from jeroen1602/angular_support
cure53
committed
Sep 5, 2024
1e2cb9b
Commits on Sep 3, 2024
Merge pull request
#989
from cure53/dependabot/npm_and_yarn/webpack-5.94.0
cure53
committed
Sep 3, 2024
c1949fb
Commits on Aug 20, 2024
Merge pull request
#987
from Gigabyte5671/svg-fefunc-attributes
cure53
committed
Aug 20, 2024
403e2dd
Commits on Jul 19, 2024
Merge pull request
#983
from christianhg/patch-1
cure53
committed
Jul 19, 2024
4ec7f66
Commits on Jul 5, 2024
fix: Fixed a typo on the README
cure53
committed
Jul 5, 2024
90a10a1
chore: Preparing 3.1.6 release
cure53
committed
Jul 5, 2024
65df042
Commits on Jul 4, 2024
fix: Made sure that remove() is not called directly from node
cure53
committed
Jul 4, 2024
6e03334
fix: Fixed a DOM clobbering issue leading to an error being thrown
cure53
committed
Jul 4, 2024
00fc06c
Commits on Jul 2, 2024
Merge pull request
#977
from cure53/dependabot/npm_and_yarn/multi-99ca4f73d8
cure53
committed
Jul 2, 2024
f8c2ef5
Commits on Jun 25, 2024
docs: Added better security warning about SAFE_FOR_XML to README
cure53
committed
Jun 25, 2024
9978cec
fix: Changed the order for attribute checks slightly for safer hooks
cure53
committed
Jun 25, 2024
fa542df
Commits on Jun 20, 2024
Merge pull request
#975
from cure53/dependabot/npm_and_yarn/multi-2d3aef8690
cure53
committed
Jun 20, 2024
b8b552c
Merge pull request
#974
from Rotzbua/feat_website_lang
cure53
committed
Jun 20, 2024
d0d93ec
Merge pull request
#973
from Rotzbua/fix_typos
cure53
committed
Jun 20, 2024
3bff1af
Merge pull request
#972
from Rotzbua/feat_docs_removed_options
cure53
committed
Jun 20, 2024
9518bba
Merge pull request
#970
from cure53/dependabot/npm_and_yarn/braces-3.0.3
cure53
committed
Jun 20, 2024
5a7a70a
Commits on May 31, 2024
chore: Preparing 3.1.5 release
cure53
committed
May 31, 2024
16a46de
Commits on May 27, 2024
chore: Experimentally removing the depth counter logic as we have better defenses now
cure53
committed
May 27, 2024
7cf4890
Commits on May 23, 2024
see
#961
cure53
committed
May 23, 2024
bfeb9a9
Commits on May 19, 2024
chore: Preparing 3.1.4 release
cure53
committed
May 19, 2024
3ddb7f2
Commits on May 18, 2024
test: Experimentally changed TEST_PROBE_ONLY to not cover 2.x
cure53
committed
May 18, 2024
4486f91
fix: Added MSIE number check fix to main as well
cure53
committed
May 18, 2024
1223487
Merge pull request
#957
from Gigabyte5671/popover-api
cure53
committed
May 18, 2024
a34860b
Merge pull request
#956
from MortenHofft/patch-1
cure53
committed
May 18, 2024
96bf0d4
Commits on May 11, 2024
chore: Preparing 3.1.3 release
cure53
committed
May 11, 2024
3fe78d7
Commits on May 8, 2024
fix: Added smaller-than-null check for __depth hardening code
cure53
committed
May 8, 2024
b20ce99
fix: Hardened the depth tracking code against prototype pollution
cure53
committed
May 8, 2024
1e52026
Commits on May 7, 2024
fix: Made the regex for comment scrubbing a bit stricter
cure53
committed
May 7, 2024
8df72f1
fix: Expanded the comment scrubbing regex matching a bit further
cure53
committed
May 7, 2024
ae517d6
fix: Added better configurability for new comment behavior
cure53
committed
May 7, 2024
b6818ce
Commits on May 5, 2024
docs: Changed inline comments slightly to be more accurate
cure53
committed
May 5, 2024
aafd7a8
test: Fixed the tests
cure53
committed
May 5, 2024
a377bf8
fix: Added experiemental comment scrubbing inside attributes
cure53
committed
May 5, 2024
d1d5d22
fix
#949
cure53
committed
May 5, 2024
dc61232
Pagination
Previous
Next
You can’t perform that action at this time.