CVE-2018-18405
CVE-2018-18405
jQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG element. NOTE: this vulnerability has been reported to be spam entry
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://gist.github.com/CyberSecurityUP/26c5b032897630fe8407da4a8ef216d4https://gitter.im/jquery/jquery?at=5ea844a05cd4fe50a3d7ddc9https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VOE7P7APPRQKD4FGNHBKJPDY6FFCOH3W/https://twitter.com/DanielRufde/status/1255185961866145792