Reflected cross-site scripting (XSS) In jquery-rails
This advisory was classified as a False Positive during our data review process to ensure accuracy and data quality.
Description
Duplicate Advisory: jQuery Cross Site Scripting vulnerability
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-jpcq-cgw6-v4j6. This link is maintained to preserve external references.
Original Description
Cross Site Scripting vulnerability in jQuery v.2.2.0 until v.3.5.0 allows a remote attacker to execute arbitrary code via the <options> element.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rubygems | 4.4.0 | ||
maven | 3.5.0 | ||
nuget | 3.5.0, 3.5.0 | ||
npm | 3.5.0 | ||
nuget | 3.5.0 | ||
rpm rhel8 | - | - |
Aliases
1. 2. 3. 4. 5. 6. 7.
References
1. 2. 3. 4. 5. 6. 7. 8. 9.