Lucene search

K
githubGitHub Advisory DatabaseGHSA-257Q-PV89-V3XV
HistoryJun 26, 2023 - 9:30 p.m.

Duplicate Advisory: jQuery Cross Site Scripting vulnerability

2023-06-2621:30:58
CWE-79
GitHub Advisory Database
github.com
59
jquery
cross site scripting
vulnerability
remote code execution
options element

6.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.8%

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-jpcq-cgw6-v4j6. This link is maintained to preserve external references.

Original Description

Cross Site Scripting vulnerability in jQuery v.2.2.0 until v.3.5.0 allows a remote attacker to execute arbitrary code via the <options> element.

Affected configurations

Vulners
Node
org.webjars.npm\Matchjquery
OR
org.webjars.npm\Matchjquery
OR
jqueryjqueryRange1.0.3
OR
jqueryjqueryRange<3.5.0
OR
jqueryjqueryRange<4.4.0
OR
jqueryjqueryRange1.0.3
OR
jqueryjqueryRange<3.5.0

6.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.8%