
Please wait while updating issue type...
The TBG application is using a vulnerable library jQuery UI dialog, version 1.11.4, which is affected by the following vulnerabilities:
-
GHSA-G8Q2-24JH-5HPC: High severity vulnerability that affects jquery-ui Withdrawn, accidental duplicate publish. Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.
-
NODEJS:127: XSS in dialog closeText ## Overview Affected versions of
jquery-ui
are vulnerable to a cross-site scripting vulnerability when arbitrary user input is supplied as the value of thecloseText
parameter in thedialog
function. jQuery-UI is a library for manipulating UI elem... -
GHSA-HPCF-8VF9-Q4GJ: Moderate severity vulnerability that affects jquery-ui Cross- site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.

-
Type of bugNot triaged
-
LikelihoodNot triaged
-
EffectNot triaged
-
Estimated time No time estimated
-
Time spent No time spent
-
thnguyen
-
-
zegenie
- Subscribers 1 Click here to show the list of subscribers
-
-
-
Unknown Not determined
Post a comment and get things done