VYPR

apk package

chainguard/wazuh-dashboard-dashboards-maps

pkg:apk/chainguard/wazuh-dashboard-dashboards-maps

Vulnerabilities (22)

  • CVE-2026-41238MedApr 23, 2026
    affected < 4.14.4-r3fixed 4.14.4-r3

    DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Versions 3.0.1 through 3.3.3 are vulnerable to a prototype pollution-based XSS bypass. When an application uses `DOMPurify.sanitize()` with the default configuration (no `CUSTOM_ELEMENT_HANDLING` op

  • CVE-2026-5758MedApr 15, 2026
    affected < 4.14.4-r3fixed 4.14.4-r3

    JavaScript is vulnerable to prototype pollution in Mafintosh's protocol-buffers-schema Version 3.6.0, where an attacker may alter the application logic, bypass security checks, cause a DoS or achieve remote code execution.

Page 2 of 2