Highlights
Reflected XSS: 1 prior fix. Scrutinize any change in this area.
src/dash-table/dash/sanitize.ts: most-fixed (1 issue). Treat as high-risk during review.
1 high-severity fix in this history; regressions here are high-impact.
Recurring patterns
The bug types that recur here, drawn from past fixes, not open vulnerabilities.
Reflected XSS: Inadequate sanitization of user-controlled markdown content rendered within table cells allows attackers to execute arbitrary scripts in the context of the user's browser session. Developers must ensure that all markdown rendering pipelines pass through the sanitization logic defined in sanitize.ts before reaching the DOM.