CVE-2025-62796: Jquery Dom Xss Dynamic String

Potential DOM XSS via unescaped string passed to jQuery DOM manipulation methods. Use `.text()`, `document.createTextNode()`, or native `appendChild()` instead.

Provally CuratedPublic repositoryMediumMedium confidenceVerifiedApache-2.0JS
greprules fetch cve-2025-62796-jquery-dom-xss-dynamic-string --engine opengrep

Description

Potential DOM XSS via unescaped string passed to jQuery DOM manipulation methods. Use `.text()`, `document.createTextNode()`, or native `appendChild()` instead.