Medium severity5.4NVD Advisory· Published Apr 10, 2022· Updated Jun 17, 2026
CVE-2022-1291
CVE-2022-1291
Description
XSS vulnerability with default onCellHtmlData function in GitHub repository hhurz/tableexport.jquery.plugin prior to 1.25.0. Transmitting cookies to third-party servers. Sending data from secure sessions to third-party servers
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
tableexport.jquery.pluginnpm | < 1.25.0 | 1.25.0 |
Affected products
3- cpe:2.3:a:tableexport.jquery.plugin_project:tableexport.jquery.plugin:*:*:*:*:*:*:*:*Range: <1.25.0
- hhurz/hhurz/tableexport.jquery.pluginv5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/hhurz/tableexport.jquery.plugin/commit/dcbaee23cf98328397a153e71556f75202988ec9nvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/49a14371-6058-47dd-9801-ec38a7459fc5nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-j636-crp3-m584ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-1291ghsaADVISORY
News mentions
0No linked articles in our index yet.