Unrated severityNVD Advisory· Published Apr 22, 2020· Updated Aug 5, 2024
CVE-2018-18405
CVE-2018-18405
Description
jQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG element. NOTE: this vulnerability has been reported to be spam entry
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- jQuery/jQuerydescription
Patches
Vulnerability mechanics
References
4- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VOE7P7APPRQKD4FGNHBKJPDY6FFCOH3W/mitrevendor-advisoryx_refsource_FEDORA
- gist.github.com/CyberSecurityUP/26c5b032897630fe8407da4a8ef216d4mitrex_refsource_MISC
- gitter.im/jquery/jquerymitrex_refsource_MISC
- twitter.com/DanielRufde/status/1255185961866145792mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.