CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text label
XSS in the `of` option of the `.position()` util
XSS in `*Text` options of the Datepicker widget
XSS in the `altField` option of the Datepicker widget
jquery: Cross-site scripting (XSS) via <script> HTML tags containing whitespaces
Potential XSS vulnerability in jQuery
jQuery has a potential XSS vulnerability
jquery: crafted onerror attribute of an IMG element could result in XSS
jquery: Prototype pollution in object's prototype leading to denial of service, remote code execution, or property injection
jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased na…
jquery: Cross-site scripting via cross-domain ajax requests
js-jquery: XSS via improper selector detection
jQuery: cross-site scripting flaw
jquery: Cross-site scripting (XSS) via $(location.hash) and $(#<tag>)
The jQuery framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain th…
Showing 1 to 15 CVEs · page 1