Skip to content

[SRF] Disable Exhibit due to "jQuery < 1.9.0 XSS Vulnerability" #8

@alexander-gesinn

Description

@alexander-gesinn

SemanticMediaWiki/SemanticResultFormats#448

Vulnerability:

Medium (CVSS: 6.1)
NVT: jQuery < 1.9.0 XSS Vulnerability

Product detection result
cpe:/a:jquery:jquery:1.3.2

Summary
jQuery is vulnerable to Cross-site Scripting (XSS) attacks.

Vulnerability Detection Result
Installed version: 1.3.2
Fixed version: 1.9.0
Installation
path / port: SemanticResultFormats/formats/Exhibit/ajax/scripts/jquery-1.3.2.min.js

Solution:
Solution type: VendorFix
Update to version 1.9.0 or later.

Metadata

Metadata

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions