Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32741
HistoryOct 27, 2021 - 6:12 a.m.

Cross-site Scripting (XSS)

2021-10-2706:12:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
331

0.004 Low

EPSS

Percentile

73.0%

jquery-ui is vulnerable to cross-site scripting. An attacker can inject and execute malicious javascript through the _updateAlternate function in datepicker.js as it does not properly sanitize altField

References