Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36412
HistoryJul 19, 2022 - 5:25 a.m.

Cross-site Scripting (XSS)

2022-07-1905:25:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
82
cross-site scripting
jquery-ui
input sanitization
malicious javascript
checkboxradio.js

EPSS

0.002

Percentile

60.7%

jquery-ui is vulnerable to cross-site scripting attacks. The vulnerability exists in the widget function in checkboxradio.js due to a lack of input sanitization which allows a malicious attacker to inject and execute malicious javascript.