Lucene search

K
osvGoogleOSV:GHSA-J636-CRP3-M584
HistoryApr 11, 2022 - 12:00 a.m.

Cross-site Scripting in tableexport.jquery.plugin

2022-04-1100:00:22
Google
osv.dev
14
cross-site scripting
tableexport.jquery.plugin
github
vulnerability
cookies
third-party servers
secure sessions.

EPSS

0.001

Percentile

21.4%

There is a cross-site scripting vulnerability with default onCellHtmlData function in GitHub repository hhurz/tableexport.jquery.plugin prior to 1.25.0. This can result in transmitting cookies to third-party servers and/or sending data from secure sessions to third-party servers.

EPSS

0.001

Percentile

21.4%

Related for OSV:GHSA-J636-CRP3-M584