Ubuntu Security Update USN-7622-1: jQuery vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,810
Reaction score
74
Credits
-1,257
It was discovered that jQuery did not correctly handle HTML tags. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. This issue only affected Ubuntu 14.04 LTS. (CVE-2012-6708) It was discovered that jQuery did not correctly handle unsanitized source objects due to prototype pollution. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. (CVE-2019-11358) Masato Kinugawa discovered that jQuery did not correctly sanitize certain HTML elements. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2020-11022) Masato Kinugawa discovered that jQuery did not correctly sanitize certain HTML elements. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. This issue only affected Ubuntu 18.04 LTS. (CVE-2020-11023)

Continue reading...
 


Follow Linux.org

Members online


Top