İçeriğe atla
Noroxi

jquery kayıtları

jquery üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
1 · %9,1
Silahlaştırılmış
1 · %9,1
Pre-auth RCE
0
Düzeltme kaydı olan
%72,7
Yayından KEV’e ortanca
1730 gün

Tüm kayıtlar

11 kayıt
  • CVE-2020-11023
    79Bu hafta

    Potential XSS vulnerability in jQuery

    OrtaCVSS 6,1KEVSilahlaştırılmışEPSS %85

    jquery · jquery29 Nis 2020

  • CVE-2020-11022
    54Planlayın

    jQuery has a potential XSS vulnerability

    OrtaCVSS 6,1Kavram kanıtıEPSS %99

    jquery · jquery29 Nis 2020

  • CVE-2019-11358
    50Planlayın

    jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototyp

    OrtaCVSS 6,1Kavram kanıtıEPSS %87

    jquery · jquery19 Nis 2019

  • CVE-2015-9251
    33İzleyin

    jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType o

    OrtaCVSS 6,1Kavram kanıtıEPSS %30

    jquery · jquery18 Oca 2018

  • CVE-2016-10707
    31İzleyin

    jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names.

    YüksekCVSS 7,5İstismar yokEPSS %3

    jquery · jquery18 Oca 2018

  • CVE-2012-6708
    27İzleyin

    jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks.

    OrtaCVSS 6,1Kavram kanıtıEPSS %9

    jquery · jquery18 Oca 2018

  • CVE-2020-7656
    26İzleyin

    jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method.

    OrtaCVSS 6,1Kavram kanıtıEPSS %6

    jquery · jquery19 May 2020

  • CVE-2014-6071
    25İzleyin

    jQuery 1.4.2 allows remote attackers to conduct cross-site scripting (XSS) attacks via vectors related to use of the text method inside afte

    OrtaCVSS 6,1İstismar yokEPSS %2

    jquery · jquery16 Oca 2018

  • CVE-2018-18405
    24İzleyin

    jQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG element.

    OrtaCVSS 6,1İstismar yokEPSS %2

    jquery · jquery22 Nis 2020

  • CVE-2011-4969
    23İzleyin

    Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inj

    OrtaCVSS 4,3İstismar yokEPSS %19

    jquery · jquery8 Mar 2013

  • CVE-2007-2379
    21İzleyin

    The jQuery framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote att

    OrtaCVSS 5,0İstismar yokEPSS %3

    jquery · jquery30 Nis 2007