jqueryui records
8 published records for vendor jqueryui.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 87.5%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2021-41184Proof of concept | XSS in the `of` option of the `.position()` utiljqueryui · jquery ui · CWE-79 | Medium6.1 | — | 40.8% | Oct 26, 2021 |
36Monitor | CVE-2021-41182Proof of concept | XSS in the `altField` option of the Datepicker widgetjqueryui · jquery ui · CWE-79 | Medium6.1 | — | 39.4% | Oct 26, 2021 |
31Monitor | CVE-2016-7103No exploit | Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via jqueryui · jquery ui · CWE-79 | Medium6.1 | — | 22.6% | Mar 15, 2017 |
30Monitor | CVE-2010-5312No exploit | Cross-site scripting (XSS) vulnerability in jquery.ui.dialog.js in the Dialog widget in jQuery UI before 1.10.0 allows remote attackers to idebian · debian linux · CWE-79 | Medium6.1 | — | 18.4% | Nov 24, 2014 |
28Monitor | CVE-2024-30875No exploit | Cross Site Scripting vulnerability in JavaScript Library jquery-ui v.1.13.1 allows a remote attacker to obtain sensitive information and exeCWE-79 | High7.1 | — | 0.9% | Oct 17, 2024 |
27Monitor | CVE-2021-41183No exploit | XSS in `*Text` options of the Datepicker widgetjqueryui · jquery ui · CWE-79 | Medium6.1 | — | 8.5% | Oct 26, 2021 |
25Monitor | CVE-2022-31160Proof of concept | jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text labeljqueryui · jquery ui · CWE-79 | Medium6.1 | — | 2.6% | Jul 20, 2022 |
19Monitor | CVE-2012-6662No exploit | Cross-site scripting (XSS) vulnerability in the default content option in jquery.ui.tooltip.js in the Tooltip widget in jQuery UI before 1.1redhat · enterprise linux desktop · CWE-79 | Medium4.3 | — | 6.5% | Nov 24, 2014 |
- CVE-2021-4118436Monitor
XSS in the `of` option of the `.position()` util
MediumCVSS 6.1Proof of conceptEPSS 41%jqueryui · jquery uiOct 26, 2021
- CVE-2021-4118236Monitor
XSS in the `altField` option of the Datepicker widget
MediumCVSS 6.1Proof of conceptEPSS 39%jqueryui · jquery uiOct 26, 2021
- CVE-2016-710331Monitor
Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via
MediumCVSS 6.1No exploitEPSS 23%jqueryui · jquery uiMar 15, 2017
- CVE-2010-531230Monitor
Cross-site scripting (XSS) vulnerability in jquery.ui.dialog.js in the Dialog widget in jQuery UI before 1.10.0 allows remote attackers to i
MediumCVSS 6.1No exploitEPSS 18%debian · debian linuxNov 24, 2014
- CVE-2024-3087528Monitor
Cross Site Scripting vulnerability in JavaScript Library jquery-ui v.1.13.1 allows a remote attacker to obtain sensitive information and exe
HighCVSS 7.1No exploitEPSS 1%Oct 17, 2024
- CVE-2021-4118327Monitor
XSS in `*Text` options of the Datepicker widget
MediumCVSS 6.1No exploitEPSS 9%jqueryui · jquery uiOct 26, 2021
- CVE-2022-3116025Monitor
jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text label
MediumCVSS 6.1Proof of conceptEPSS 3%jqueryui · jquery uiJul 20, 2022
- CVE-2012-666219Monitor
Cross-site scripting (XSS) vulnerability in the default content option in jquery.ui.tooltip.js in the Tooltip widget in jQuery UI before 1.1
MediumCVSS 4.3No exploitEPSS 6%redhat · enterprise linux desktopNov 24, 2014