In jQuery versions greater than or equal to 1.2 and prior to 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jquery jquery |
||
drupal drupal |
||
debian debian linux 9.0 |
||
fedoraproject fedora 31 |
||
fedoraproject fedora 32 |
||
fedoraproject fedora 33 |
||
oracle weblogic server 12.1.3.0.0 |
||
oracle jdeveloper 11.1.1.9.0 |
||
oracle retail back office 14.1 |
||
oracle retail back office 14.0 |
||
oracle peoplesoft enterprise peopletools 8.56 |
||
oracle weblogic server 10.3.6.0.0 |
||
oracle communications webrtc session controller 7.2 |
||
oracle weblogic server 12.2.1.3.0 |
||
oracle agile product lifecycle management for process 6.2.0.0 |
||
oracle peoplesoft enterprise peopletools 8.57 |
||
oracle application testing suite 13.3.0.1 |
||
oracle retail returns management 14.0 |
||
oracle retail returns management 14.1 |
||
oracle jdeveloper 12.2.1.3.0 |
||
oracle policy automation connector for siebel 10.4.6 |
||
oracle financial services market risk measurement and management 8.0.6 |
||
oracle hospitality materials control 18.1 |
||
oracle banking digital experience 18.2 |
||
oracle banking digital experience 18.3 |
||
oracle banking digital experience 19.1 |
||
oracle banking digital experience 18.1 |
||
oracle weblogic server 12.2.1.4.0 |
||
oracle financial services hedge management and ifrs valuations |
||
oracle financial services loan loss forecasting and provisioning |
||
oracle financial services asset liability management 8.0.7 |
||
oracle financial services asset liability management 8.0.6 |
||
oracle financial services profitability management 8.0.7 |
||
oracle financial services profitability management 8.0.6 |
||
oracle financial services funds transfer pricing 8.0.7 |
||
oracle financial services funds transfer pricing 8.0.6 |
||
oracle financial services price creation and discovery 8.0.7 |
||
oracle peoplesoft enterprise peopletools 8.58 |
||
oracle financial services liquidity risk management 8.0.6 |
||
oracle financial services liquidity risk measurement and management 8.0.8 |
||
oracle financial services liquidity risk measurement and management 8.0.7 |
||
oracle financial services balance sheet planning 8.0.8 |
||
oracle weblogic server 14.1.1.0.0 |
||
oracle financial services analytical applications infrastructure |
||
oracle retail customer management and segmentation foundation 19.0 |
||
oracle healthcare foundation 7.2.0 |
||
oracle healthcare foundation 7.2.1 |
||
oracle healthcare foundation 7.3.0 |
||
oracle healthcare foundation 7.1.1 |
||
oracle communications billing and revenue management 12.0.0.3.0 |
||
oracle communications billing and revenue management 7.5.0.23.0 |
||
oracle financial services data governance for us regulatory reporting |
||
oracle hospitality simphony |
||
oracle banking digital experience 19.2 |
||
oracle financial services basel regulatory capital internal ratings based approach |
||
oracle insurance data foundation |
||
oracle financial services price creation and discovery 8.0.6 |
||
oracle financial services profitability management 8.1.0 |
||
oracle banking digital experience 20.1 |
||
oracle policy automation |
||
oracle financial services analytical applications reconciliation framework |
||
oracle financial services loan loss forecasting and provisioning 8.1.0 |
||
oracle financial services basel regulatory capital internal ratings based approach 8.1.0 |
||
oracle siebel ui framework 20.8 |
||
oracle communications application session controller 3.8m0 |
||
oracle financial services institutional performance analytics 8.1.0 |
||
oracle communications diameter signaling router idih\\ |
||
oracle financial services institutional performance analytics 8.0.6 |
||
oracle financial services data foundation |
||
oracle insurance insbridge rating and underwriting |
||
oracle financial services liquidity risk measurement and management 8.1.0 |
||
oracle financial services institutional performance analytics 8.0.7 |
||
oracle financial services basel regulatory capital basic 8.1.0 |
||
oracle financial services regulatory reporting for us federal reserve |
||
oracle financial services regulatory reporting for european banking authority |
||
oracle policy automation for mobile devices |
||
oracle insurance allocation manager for enterprise profitability 8.0.8 |
||
oracle insurance insbridge rating and underwriting 5.6.1.0 |
||
oracle hospitality simphony 18.1 |
||
oracle financial services data integration hub 8.0.6 |
||
oracle financial services data integration hub 8.1.0 |
||
oracle insurance accounting analyzer 8.0.9 |
||
oracle financial services basel regulatory capital basic |
||
oracle financial services hedge management and ifrs valuations 8.1.0 |
||
oracle financial services analytical applications reconciliation framework 8.1.0 |
||
oracle insurance allocation manager for enterprise profitability 8.1.0 |
||
oracle hospitality simphony 18.2 |
||
oracle financial services asset liability management 8.1.0 |
||
oracle enterprise manager ops center 12.4.0.0 |
||
oracle enterprise session border controller 8.4 |
||
oracle financial services market risk measurement and management 8.0.8 |
||
oracle jdeveloper 12.2.1.4.0 |
||
oracle financial services funds transfer pricing 8.1.0 |
||
oracle financial services data integration hub 8.0.7 |
||
oracle communications services gatekeeper 7.0 |
||
oracle communications eagle application processor |
||
oracle blockchain platform |
||
oracle storagetek acsls 8.5.1 |
||
netapp snap creator framework - |
||
netapp snapcenter - |
||
netapp oncommand insight - |
||
netapp oncommand system manager |
||
netapp max data - |
||
netapp h300s_firmware - |
||
netapp h500s_firmware - |
||
netapp h700s_firmware - |
||
netapp h300e_firmware - |
||
netapp h500e_firmware - |
||
netapp h700e_firmware - |
||
netapp h410s_firmware - |
||
netapp h410c_firmware - |
||
opensuse leap 15.1 |
||
opensuse leap 15.2 |
||
tenable log correlation engine |
||
oracle agile product supplier collaboration for process 6.2.0.0 |
||
oracle hospitality simphony 19.1.0-19.1.2 |
||
oracle insurance data foundation 8.0.6-8.1.0 |
||
oracle banking digital experience |