QID 980720
QID 980720: Nodejs (npm) Security Update for datatables (GHSA-4mv4-gmmf-q382)
Cross-site scripting (XSS) vulnerability in the DataTables plugin 1.10.8 and earlier for jQuery allows remote attackers to inject arbitrary web script or HTML via the scripts parameter to media/unit_testing/templates/6776.php.
## Recommendation
Update to a version greater than 1.10.8.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-4mv4-gmmf-q382 for updates pertaining to this vulnerability.
Vendor References
- GHSA-4mv4-gmmf-q382 -
github.com/advisories/GHSA-4mv4-gmmf-q382
CVEs related to QID 980720
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-4mv4-gmmf-q382 | datatables |
|