knockout-jqueryui icon indicating copy to clipboard operation
knockout-jqueryui copied to clipboard

knockout-jqueryui 2.2.2 (XSS Vulnerability)

Open Inscramble opened this issue 1 year ago • 0 comments

Hi

I have found a security vulnerability on knockout-jqueryui v2.2.2 for cross site scripting in the Sonatype analysis. CVE-2010-5312: Cross-site scripting (XSS) vulnerability in jquery.ui.dialog.js in the Dialog widget in jQuery UI before 1.10.0 allows remote attackers to inject arbitrary web script or HTML via the title option. Please solve this issue as soon as possible. This issue is also there in the latest versions of it.

Inscramble avatar Jun 13 '23 06:06 Inscramble