jQuery 1.8.3 flagged as a vulnerable library - OutSystems
The jQuery Security Model Explained - Virtue Security jQuery’s “XSS Vulnerability” If you arrived at this page today because a vulnerability titled “jQuery XSS Vulnerability” was raised on a pentest report, you’re not alone. At the time of this writing there are no known direct XSS vulnerabilities in the jQuery framework (not including jQuery plugins). NVD - CVE-2015-9251 Apr 15, 2020
jQuery’s “XSS Vulnerability” If you arrived at this page today because a vulnerability titled “jQuery XSS Vulnerability” was raised on a pentest report, you’re not alone. At the time of this writing there are no known direct XSS vulnerabilities in the jQuery framework (not including jQuery plugins).
jQuery Versions Vulnerable to Selector XSS with class Attribute ('. XSS_VECTOR') List of all jQuery versions vulnerable to class selector XSS. These jQuery libraries cause DOM XSS when a user controlled value is passed as a the class selected [$('.'+ className)] NetScaler J-Query vulnerability - NetScaler VPX - Discussions Jun 11, 2019 Acunetix checks for vulnerabilities in jQuery and Tiki Wiki
This vulnerability affects all previous version of jQuery. As they mention in the release notes, " patch diffs exist to match previous jQuery versions." For reference, Drupal released a core patch for 7 and 8 which replaced jQuery.extend() completely with minor changes compatible with all old versions of jQuery.
Oct 02, 2014 CVE-2020-7656 jQuery Vulnerability in NetApp Products