Количество 7
Количество 7
BDU:2023-07536
Уязвимость библиотеки jQuery, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить межсайтовую сценарную атаку
CVE-2020-7656
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.
CVE-2020-7656
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.
CVE-2020-7656
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.
CVE-2020-7656
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load ...
GHSA-q4m3-2j7h-f7xw
Cross-Site Scripting in jquery
ELSA-2021-9552
ELSA-2021-9552: pcs security update (LOW)
Уязвимостей на страницу
Уязвимость  | CVSS  | EPSS  | Опубликовано  | |
|---|---|---|---|---|
BDU:2023-07536 Уязвимость библиотеки jQuery, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить межсайтовую сценарную атаку  | CVSS3: 6.1  | 1% Низкий | больше 5 лет назад | |
CVE-2020-7656 jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.  | CVSS3: 6.1  | 1% Низкий | больше 5 лет назад | |
CVE-2020-7656 jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.  | CVSS3: 5.4  | 1% Низкий | больше 5 лет назад | |
CVE-2020-7656 jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.  | CVSS3: 6.1  | 1% Низкий | больше 5 лет назад | |
CVE-2020-7656 jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load ...  | CVSS3: 6.1  | 1% Низкий | больше 5 лет назад | |
GHSA-q4m3-2j7h-f7xw Cross-Site Scripting in jquery  | CVSS3: 6.1  | 1% Низкий | больше 5 лет назад | |
ELSA-2021-9552 ELSA-2021-9552: pcs security update (LOW)  | почти 4 года назад | 
Уязвимостей на страницу