QID 983495
QID 983495: Nodejs (npm) Security Update for jquery-ui (GHSA-g8q2-24jh-5hpc)
Withdrawn, accidental duplicate publish.
Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-g8q2-24jh-5hpc for updates pertaining to this vulnerability.
Vendor References
- GHSA-g8q2-24jh-5hpc -
github.com/advisories/GHSA-g8q2-24jh-5hpc
CVEs related to QID 983495
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-g8q2-24jh-5hpc | jquery-ui |
|