DOM Clobbering Vulnerability in Svelte Framework
CVE-2026-42573
5.3MEDIUM
What is CVE-2026-42573?
Prior to version 5.55.7, the Svelte framework was susceptible to a DOM clobbering issue that could compromise its internal state on specific elements. This vulnerability potentially allowed malicious users to execute cross-site scripting (XSS) attacks, thus compromising web applications utilizing the framework. The issue has been addressed in version 5.55.7.
Affected Version(s)
svelte < 5.55.7
