RSS   Vulnerabilities for 'Wicket-jquery-ui'   RSS

2018-04-18
 
CVE-2018-1325

CWE-79
 

 
In Apache wicket-jquery-ui <= 6.29.0, <= 7.10.1, <= 8.0.0-M9.1, JS code created in WYSIWYG editor will be executed on display.

 
2018-03-12
 
CVE-2017-15719

CWE-79
 

 
In Wicket jQuery UI 6.28.0 and earlier, 7.9.1 and earlier, and 8.0.0-M8 and earlier, a security issue has been discovered in the WYSIWYG editor that allows an attacker to submit arbitrary JS code to WYSIWYG editor.

 


Copyright 2024, cxsecurity.com

 

Back to Top