CVE-2011-4969

EPSS 6.3%

jQuery vulnerable to Cross-Site Scripting (XSS)

發布日:2022/5/14修改日:2026/2/3

描述

Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.

受影響套件(5)

參考連結(21)