VYPR

Dojox

by Dojo

Source repositories

CVEs (1)

  • CVE-2019-10785Feb 13, 2020
    risk 0.00cvss epss 0.00

    dojox is vulnerable to Cross-site Scripting in all versions before version 1.16.1, 1.15.2, 1.14.5, 1.13.6, 1.12.7 and 1.11.9. This is due to dojox.xmpp.util.xmlEncode only encoding the first occurrence of each character, not all of them.