Описание
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.7.2+debian-1ubuntu1 |
hardy | DNE | |
lucid | released | 1.3.3-2ubuntu1.2 |
oneiric | released | 1.6.2-1ubuntu2.2 |
precise | not-affected | 1.7.1-1ubuntu1 |
quantal | not-affected | 1.7.2+debian-1ubuntu1 |
upstream | released | 1.6.3 |
Показывать по
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when ...
Уязвимость библиотеки jQuery, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю внедрить произвольный веб-скрипт или HTML-код
EPSS
4.3 Medium
CVSS2