Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-246p-fh28-56r9

Опубликовано: 13 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.3

Описание

The HCL BigFix SCM Reporting site contains an outdated and unsupported version of the jQuery 1.x library. Since jQuery 1.x has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses and increase the risk of client-side attacks such as Cross-Site Scripting (XSS) or manipulation through vulnerable third-party components.

The HCL BigFix SCM Reporting site contains an outdated and unsupported version of the jQuery 1.x library. Since jQuery 1.x has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses and increase the risk of client-side attacks such as Cross-Site Scripting (XSS) or manipulation through vulnerable third-party components.

EPSS

Процентиль: 12%
0.00212
Низкий

8.3 High

CVSS3

Дефекты

CWE-1104

Связанные уязвимости

CVSS3: 8.3
nvd
3 месяца назад

The HCL BigFix SCM Reporting site contains an outdated and unsupported version of the jQuery 1.x library. Since jQuery 1.x has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses and increase the risk of client-side attacks such as Cross-Site Scripting (XSS) or manipulation through vulnerable third-party components.

EPSS

Процентиль: 12%
0.00212
Низкий

8.3 High

CVSS3

Дефекты

CWE-1104