OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:35
发布时间
2019-05-30 04:25
GitHub 审查时间
2019-05-30 04:24
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/05/GHSA-2hwp-g4g7-mwwj/GHSA-2hwp-g4g7-mwwj.json
Versions of jquery.terminal prior to 1.21.0 are vulnerable to Reflected Cross-Site Scripting. If the application has either of the options anyLinks or invokeMethods set to true, the application may execute arbitrary JavaScript through crafted malicious payloads due to insufficient sanitization.
Upgrade to version 1.21.0 or later