Skip to content

xmldom has XML node injection through unvalidated comment serialization

High severity GitHub Reviewed Published Apr 18, 2026 in xmldom/xmldom • Updated May 8, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts