VYPR

Jplayer

by Happyworm

npm: jplayer

Source repositories

CVEs (3)

  • CVE-2013-2022Aug 17, 2013
    risk 0.00cvss epss 0.03

    Multiple cross-site scripting (XSS) vulnerabilities in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer before 2.2.23 allow remote attackers to inject arbitrary web script or HTML via the (1) jQuery or (2) id parameters, a different vulnerability than…

  • CVE-2013-2023Aug 15, 2013
    risk 0.00cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to incomplete blacklists, a different…

  • CVE-2013-1942Aug 15, 2013
    risk 0.00cvss epss 0.05

    Multiple cross-site scripting (XSS) vulnerabilities in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer before 2.2.20, as used in ownCloud Server before 5.0.4 and other products, allow remote attackers to inject arbitrary web script or HTML via the (1)…