Moderate severityNVD Advisory· Published Apr 10, 2022· Updated Aug 2, 2024
XSS vulnerability with default `onCellHtmlData` function in hhurz/tableexport.jquery.plugin
CVE-2022-1291
Description
XSS vulnerability with default onCellHtmlData function in GitHub repository hhurz/tableexport.jquery.plugin prior to 1.25.0. Transmitting cookies to third-party servers. Sending data from secure sessions to third-party servers
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
tableexport.jquery.pluginnpm | < 1.25.0 | 1.25.0 |
Affected products
2- hhurz/hhurz/tableexport.jquery.pluginv5Range: unspecified
Patches
Vulnerability mechanics
Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
4- github.com/advisories/GHSA-j636-crp3-m584ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-1291ghsaADVISORY
- github.com/hhurz/tableexport.jquery.plugin/commit/dcbaee23cf98328397a153e71556f75202988ec9ghsax_refsource_MISCWEB
- huntr.dev/bounties/49a14371-6058-47dd-9801-ec38a7459fc5ghsax_refsource_CONFIRMWEB
News mentions
0No linked articles in our index yet.