CVE-2026-42573EPSS p11.3%

CVE-2026-42573CVE-2026-42573

svelte / svelte

Description

Svelte is a performance oriented web framework. Prior to version 5.55.7, Svelte was vulnerable to DOM clobbering of its internal framework state on elements, potentially leading to XSS attacks. This issue has been patched in version 5.55.7.

Scoring

CVSS 6.1 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS0.21% probability of exploitation · percentile 11.3% · 2026-06-19T12:03:05Z
Last modified2026-06-11

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-42567
CVE
CVE-2026-42599
CVE
CVE-2026-42570
CVE
CVE-2025-67647
CVE
CVE-2025-26260
CVE
CVE-2026-35466
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.