CVE-2020-11023
published 2020-04-29CVE-2020-11023: In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one…
PriorityP183medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
KEVITWEXPLOIT
CISA Known Exploited Vulnerabilitydue 2025-02-13
Exploited in the wild
EPSS
83.83%
99.7th percentile
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
Affected
77 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| components | jquery | >= 1.0.3 < 3.5.0 | 3.5.0 |
| debian | debian_linux | — | — |
| debian | node-jquery | < node-jquery 3.5.0+dfsg-2 (bookworm) | node-jquery 3.5.0+dfsg-2 (bookworm) |
| debian | otrs2 | < node-jquery 3.5.0+dfsg-2 (bookworm) | node-jquery 3.5.0+dfsg-2 (bookworm) |
| drupal | core | >= 8.0.0 < 8.7.14 | 8.7.14 |
| drupal | core | >= 8.8.0 < 8.8.6 | 8.8.6 |
| drupal | drupal | >= 7.0 < 7.70 | 7.70 |
| drupal | drupal | >= 8.7.0 < 8.7.14 | 8.7.14 |
| drupal | drupal | >= 8.8.0 < 8.8.6 | 8.8.6 |
| drupal | drupal_core | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| jquery | jquery | — | — |
| jquery | jquery | >= 0 < 1.7.2+dfsg-2ubuntu1+esm1 | 1.7.2+dfsg-2ubuntu1+esm1 |
| jquery | jquery | >= 0 < 1.11.3+dfsg-4ubuntu0.1~esm1 | 1.11.3+dfsg-4ubuntu0.1~esm1 |
| jquery | jquery | >= 0 < 3.2.1-1ubuntu0.1~esm1 | 3.2.1-1ubuntu0.1~esm1 |
| jquery | jquery | >= 1.0.3 < 3.5.0 | 3.5.0 |
| jquery | jquery | >= 1.0.3 < 3.5.0 | 3.5.0 |
| jquery | jquery | >= 1.0.3 < 3.5.0 | 3.5.0 |
| netapp | oncommand_system_manager | 3.0 – 3.1.3 | — |
| oracle | application_express | < 20.2 | 20.2 |
| oracle | application_testing_suite | — | — |
| oracle | banking_enterprise_collections | 2.7.0 – 2.8.0 | — |
| oracle | banking_platform | 2.4.0 – 2.10.0 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Detect use of vulnerable jQuery versions (>= 1.0.3 and < 3.5.0) via browser developer tools or SCA/SAST/DAST scanning tools such as OWASP Dependency-Check ↗
- →Monitor for suspicious scripts executing in the browser's developer console as a client-side indicator of DOM-based XSS exploitation ↗
- →Flag use of jQuery DOM manipulation methods (.html(), .append(), and others) receiving HTML input containing <option>, <select>, or similar elements from untrusted sources ↗
- →Audit web applications for jQuery versions >= 1.0.3 and < 3.5.0; the vulnerability is in the htmlPrefilter function ↗
- ·Exploitation requires untrusted HTML to be passed to jQuery DOM manipulation methods; environments where user-supplied input is not rendered via these methods are not exploitable ↗
- ·The Proof of Concept 2 payload (using a closing quote/tag injection) only affects jQuery 3.x, not all versions in the vulnerable range ↗
- ·DOM-based XSS payloads typically do not touch the server, making server-side logging and detection unreliable for this CVE ↗
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv6.1MEDIUM
vulncheck6.9MEDIUM
cisa6.1MEDIUM
vendor_debian6.9MEDIUM
vendor_redhat6.9MEDIUM
vendor_oracle6.1MEDIUM
vendor_ubuntu6.1MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
CODESYS in Festo Automation Suite
cisa_ics·2026-03-17
CODESYS in Festo Automation Suite
ICS Advisory
##
CODESYS in Festo Automation Suite
Release DateMarch 17, 2026
Alert CodeICSA-26-076-01
Related topics:
Industrial Control System Vulnerabilities, Industrial Control Systems
View CSAF
## Summary
3. TECHNICAL DETAILS
The following versions of CODESYS in Festo Automation Suite are affected:
- FESTO Software Festo Automation Suite (versions prior to 2.8.0.138) installed with CODESYS Software CODESYS Development System (3.0) vers:all/*
- FESTO Software Festo Automation Suite (versions prior to 2.8.0.138) installed with CODESYS Software CODESYS Development System (3.5.16.10) vers:all/*
- FESTO Software Festo Automation Suite (2.8.0.137) installed with CODESYS Software CODESYS Development System (3.0) vers:all/*
- FESTO Software Festo Automation
CISA ICS
Schneider Electric System Monitor Application
cisa_ics·2025-07-22·CVSS 6.9
[MEDIUM] Schneider Electric System Monitor Application
ICS Advisory
##
Schneider Electric System Monitor Application
Release DateJuly 22, 2025
Alert CodeICSA-25-203-05
Related topics:
Industrial Control System Vulnerabilities, Industrial Control Systems
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 6.9
- ATTENTION: Exploitable remotely
- Vendor: Schneider Electric
- Equipment: System Monitor Application
- Vulnerability: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to execute untrusted code.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
Schneider Electric reports the following products are affected:
- System Monitor application in Harmony Industrial PC series: All versions
Ubuntu
Drupal vulnerabilities
vendor_ubuntu·2025-07-21
CVE-2020-11022 Drupal vulnerabilities
Title: Drupal vulnerabilities
Summary: Several security issues were fixed in Drupal.
It was discovered that Drupal incorrectly parsed untrusted HTML. A
remote attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
jQuery vulnerabilities
vendor_ubuntu·2025-07-08·CVSS 6.1
CVE-2012-6708 [MEDIUM] jQuery vulnerabilities
Title: jQuery vulnerabilities
Summary: Several security issues were fixed in jQuery.
It was discovered that jQuery did not correctly handle HTML tags. An
attacker could possibly use this issue to execute a cross-site scripting
(XSS) attack. This issue only affected Ubuntu 14.04 LTS. (CVE-2012-6708)
It was discovered that jQuery did not correctly handle unsanitized source
objects due to prototype pollution. An attacker could possibly use this
issue to execute a cross-site scripting (XSS) attack. (CVE-2019-11358)
Masato Kinugawa discovered that jQuery did not correctly sanitize certain
HTML elements. An attacker could possibly use this issue to execute a
cross-site scripting (XSS) attack. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2020-11022)
Masato Kinugawa di
Ubuntu
jQuery vulnerabilities
vendor_ubuntu·2025-01-30
CVE-2020-11022 jQuery vulnerabilities
Title: jQuery vulnerabilities
Summary: Several security issues were fixed in jquery.
It was discovered that jQuery incorrectly handled parsing untrusted HTML. A
remote attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
CISA
JQuery Cross-Site Scripting (XSS) Vulnerability
cisa·2025-01-23·CVSS 6.1
CVE-2020-11023 [MEDIUM] CWE-79 JQuery Cross-Site Scripting (XSS) Vulnerability
Vulnerability: JQuery Cross-Site Scripting (XSS) Vulnerability
Affected: JQuery JQuery
JQuery contains a persistent cross-site scripting (XSS) vulnerability. When passing maliciously formed, untrusted input enclosed in HTML tags, JQuery's DOM manipulators can execute untrusted code in the context of the user's browser.
Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: https://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6 ; https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/ ; https://nvd.ni
Oracle
Oracle Oracle Fusion Middleware Risk Matrix: Security Framework (jQuery) — CVE-2020-11023
vendor_oracle·2024-10-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Fusion Middleware Risk Matrix: Security Framework (jQuery) — CVE-2020-11023
Oracle Oracle Fusion Middleware Risk Matrix: Security Framework (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2024 (OCT 2024)
Oracle
Oracle Oracle Analytics Risk Matrix: Mobile Service (jQuery) — CVE-2020-11023
vendor_oracle·2023-10-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Analytics Risk Matrix: Mobile Service (jQuery) — CVE-2020-11023
Oracle Oracle Analytics Risk Matrix: Mobile Service (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2023 (OCT 2023)
Oracle
Oracle Oracle Fusion Middleware Risk Matrix: Service Administration UI (JQuery) — CVE-2020-11023
vendor_oracle·2022-07-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Fusion Middleware Risk Matrix: Service Administration UI (JQuery) — CVE-2020-11023
Oracle Oracle Fusion Middleware Risk Matrix: Service Administration UI (JQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2022 (JUL 2022)
CISA ICS
Pepperl+Fuchs WirelessHART-Gateway
cisa_ics·2022-04-07·CVSS 7.5
[HIGH] Pepperl+Fuchs WirelessHART-Gateway
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Pepperl+Fuchs WirelessHART-Gateway
Last RevisedApril 07, 2022
Alert CodeICSA-22-097-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Pepperl+Fuchs
- Equipment: WirelessHART-Gateway
- Vulnerabilities: Use of Hard-coded Credentials, Uncontrolled Resource Consumption, Reliance on Reverse DNS Resolution for a Security-critical Action, Path Traversal, Cross-site Scripting, Exposure of Sensitive Information to an Unauthorized Actor, Cleartext Storage of Sensitive Information in a Cookie, HTTP Request Smuggling, Sensitive Co
CISA ICS
Mitsubishi Electric EcoWebServerIII
cisa_ics·2022-02-24·CVSS 6.1
[MEDIUM] Mitsubishi Electric EcoWebServerIII
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Mitsubishi Electric EcoWebServerIII
Last RevisedFebruary 24, 2022
Alert CodeICSA-22-055-02
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Mitsubishi Electric Corporation
- Equipment: Energy Saving Data Collecting Server (EcoWebServerIII)
- Vulnerabilities: Improper Neutralization of Input During Web Page Generation, Uncontrolled Resource Consumption, Improperly Controlled Modification of Dynamically-Determined Object Attributes
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow informa
Oracle
Oracle Oracle Fusion Middleware Risk Matrix: Sample apps (jQuery) — CVE-2020-11023
vendor_oracle·2022-01-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Fusion Middleware Risk Matrix: Sample apps (jQuery) — CVE-2020-11023
Oracle Oracle Fusion Middleware Risk Matrix: Sample apps (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2022 (JAN 2022)
CISA ICS
Sensormatic Electronics VideoEdge
cisa_ics·2021-11-02·CVSS 6.9
[MEDIUM] Sensormatic Electronics VideoEdge
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Sensormatic Electronics VideoEdge
Last RevisedNovember 02, 2021
Alert CodeICSA-21-306-01
## 1. EXECUTIVE SUMMARY
- CVSS v3 6.1
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Sensormatic Electronics, LLC, a subsidiary of Johnson Controls, Inc.
- Equipment: VideoEdge
- Vulnerability: Cross-site Scripting
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow the execution of untrusted code when viewing the VideoEdge admin graphical user interface.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following versions of VideoEd
Oracle
Oracle Oracle Health Sciences Applications Risk Matrix: UI (jQuery) — CVE-2020-11023
vendor_oracle·2021-10-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Health Sciences Applications Risk Matrix: UI (jQuery) — CVE-2020-11023
Oracle Oracle Health Sciences Applications Risk Matrix: UI (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2021 (OCT 2021)
Oracle
Oracle Oracle Support Tools Risk Matrix: Diagnostic Assistant (jQuery) — CVE-2020-11023
vendor_oracle·2021-07-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Support Tools Risk Matrix: Diagnostic Assistant (jQuery) — CVE-2020-11023
Oracle Oracle Support Tools Risk Matrix: Diagnostic Assistant (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2021 (JUL 2021)
Oracle
Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) — CVE-2020-11023
vendor_oracle·2021-04-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) — CVE-2020-11023
Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2021 (APR 2021)
Oracle
Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) — CVE-2020-11023
vendor_oracle·2020-10-15·CVSS 6.1
CVE-2020-11023 [MEDIUM] Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) — CVE-2020-11023
Oracle Oracle Database Server Risk Matrix: Oracle Application Express (jQuery) vulnerability
CVE: CVE-2020-11023
CVSS: 6.1
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2020 (OCT 2020)
Palo Alto
PAN
vendor_paloalto·2020-07-08·CVSS 9.8
CVE-2013-7459 [CRITICAL] PAN
PAN
The Palo Alto Networks Product Security Assurance team has evaluated and determined that these third-party or open source vulnerabilities do not have any security impact on PAN-OS or that the scenarios required for successful
CVEs: CVE-2013-7459, CVE-2018-1120, CVE-2018-1121, CVE-2018-1122, CVE-2018-1123, CVE-2018-1124, CVE-2018-16402, CVE-2020-11022, CVE-2020-11023, CVE-2020-11896, CVE-2020-11897, CVE-2020-11898, CVE-2020-11899, CVE-2020-11900, CVE-2020-11901, CVE-2020-11902, CVE-2020-11903, CVE-2020-11904, CVE-2020-11905, CVE-2020-11906, CVE-2020-11907, CVE-2020-11908, CVE-2020-11909, CVE-2020-11910, CVE-2020-11911, CVE-2020-11912, CVE-2020-11913, CVE-2020-11914
Affected products: PAN-OS
Drupal
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2020-002
vendor_drupal·2020-05-20·CVSS 6.9
CVE-2020-11022 [MEDIUM] Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2020-002
Title: Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2020-002
Vulnerability Type: Cross Site Scripting
Description: The jQuery project released version 3.5.0, and as part of that, disclosed two security vulnerabilities that affect all prior versions. As mentioned in the jQuery blog , both are [...] security issues in jQuery’s DOM manipulation methods, as in .html() , .append() , and the others. Security advisories for both of these issues have been published on GitHub. Those advisories are: CVE-2020-11022 CVE-2020-11023 These vulnerabilities may be exploitable on some Drupal sites. This Drupal security release backports the fixes to the relevant jQuery functions, without making any other changes to the jQuery version that is included in Drupal core or running on the
Red Hat
jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods
vendor_redhat·2020-04-29·CVSS 6.9
CVE-2020-11023 [MEDIUM] CWE-79 jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods
jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
A flaw was found in jQuery. HTML containing \ elements from untrusted sources are passed, even after sanitizing, to one of jQuery's DOM manipulation methods, which may execute untrusted code. The highest threat from this vulnerability is to data confidentiality and integrity.
Statement: Red Hat Enterprise Linux versions 6, 7, and 8 ship a vulnerable version of JQuery in the `pcs` component. As PCS does not
Debian
CVE-2020-11023: node-jquery - In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML...
vendor_debian·2020·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023: node-jquery - In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML...
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
Scope: local
bookworm: resolved (fixed in 3.5.0+dfsg-2)
bullseye: resolved (fixed in 3.5.0+dfsg-2)
forky: resolved (fixed in 3.5.0+dfsg-2)
sid: resolved (fixed in 3.5.0+dfsg-2)
trixie: resolved (fixed in 3.5.0+dfsg-2)
OSV
jquery vulnerabilities
osv·2025-07-08·CVSS 6.1
CVE-2012-6708 [MEDIUM] jquery vulnerabilities
jquery vulnerabilities
It was discovered that jQuery did not correctly handle HTML tags. An
attacker could possibly use this issue to execute a cross-site scripting
(XSS) attack. This issue only affected Ubuntu 14.04 LTS. (CVE-2012-6708)
It was discovered that jQuery did not correctly handle unsanitized source
objects due to prototype pollution. An attacker could possibly use this
issue to execute a cross-site scripting (XSS) attack. (CVE-2019-11358)
Masato Kinugawa discovered that jQuery did not correctly sanitize certain
HTML elements. An attacker could possibly use this issue to execute a
cross-site scripting (XSS) attack. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2020-11022)
Masato Kinugawa discovered that jQuery did not correctly sanitize certain
HTML el
GHSA
Persistent Cross-site Scripting vulnerability in PrivateBin
ghsa·2022-04-12
CVE-2022-24833 [HIGH] CWE-79 Persistent Cross-site Scripting vulnerability in PrivateBin
Persistent Cross-site Scripting vulnerability in PrivateBin
In PrivateBin
alert(document.domain);
```
2. Upload it as an attachment to a PrivateBin instance that has attachments enabled and hasn't set the recommended content security policy (in particular, one that has either no content security policy set or that allows `*` or `blob:` as a `script-src`).
3. Open the paste. (In a real attack scenario this would be done by the victim.)
4. The SVG is rendered safely as a preview, and script isn't yet executed.
5. Now (depending on your device) right-click or long tap on the image and open it in a new tab.
6. Now a `blob:` URI opens in a new tab with the image and the modal is shown, therefore the script got executed.
## Impact
We tried to reproduce the vulnerability and in our asses
OSV
Persistent Cross-site Scripting vulnerability in PrivateBin
osv·2022-04-12
CVE-2022-24833 [HIGH] Persistent Cross-site Scripting vulnerability in PrivateBin
Persistent Cross-site Scripting vulnerability in PrivateBin
In PrivateBin
alert(document.domain);
```
2. Upload it as an attachment to a PrivateBin instance that has attachments enabled and hasn't set the recommended content security policy (in particular, one that has either no content security policy set or that allows `*` or `blob:` as a `script-src`).
3. Open the paste. (In a real attack scenario this would be done by the victim.)
4. The SVG is rendered safely as a preview, and script isn't yet executed.
5. Now (depending on your device) right-click or long tap on the image and open it in a new tab.
6. Now a `blob:` URI opens in a new tab with the image and the modal is shown, therefore the script got executed.
## Impact
We tried to reproduce the vulnerability and in our asses
OSV
CVE-2020-11022: The jQuery project released version 3
osv·2020-05-20·CVSS 6.1
CVE-2020-11022 [MEDIUM] CVE-2020-11022: The jQuery project released version 3
The jQuery project released version 3.5.0, and as part of that, disclosed two security vulnerabilities that affect all prior versions. As mentioned in the [jQuery blog](https://blog.jquery.com/2020/05/04/jquery-3-5-1-released-fixing-a-regression/), both are
> [...] security issues in jQuery’s DOM manipulation methods, as in `.html()`, `.append()`, and the others. Security advisories for both of these issues have been published on GitHub.
Those advisories are:
* [CVE-2020-11022](https://github.com/jquery/jquery/security/advisories/GHSA-gxr4-xjj5-5px2)
* [CVE-2020-11023](https://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6)
These vulnerabilities may be exploitable on some Drupal sites. This Drupal security release backports the fixes to the relevant jQuery functions,
OSV
Potential XSS vulnerability in jQuery
osv·2020-04-29
CVE-2020-11023 [MEDIUM] Potential XSS vulnerability in jQuery
Potential XSS vulnerability in jQuery
### Impact
Passing HTML containing `` elements from untrusted sources - even after sanitizing them - to one of jQuery's DOM manipulation methods (i.e. `.html()`, `.append()`, and others) may execute untrusted code.
### Patches
This problem is patched in jQuery 3.5.0.
### Workarounds
To workaround this issue without upgrading, use [DOMPurify](https://github.com/cure53/DOMPurify) with its `SAFE_FOR_JQUERY` option to sanitize the HTML string before passing it to a jQuery method.
### References
https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/
### For more information
If you have any questions or comments about this advisory, search for a relevant issue in [the jQuery repo](https://github.com/jquery/jquery/issues). If you don't find an answer,
OSV
CVE-2020-11023: In jQuery versions greater than or equal to 1
osv·2020-04-29·CVSS 6.1
CVE-2020-11023 [MEDIUM] CVE-2020-11023: In jQuery versions greater than or equal to 1
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
GHSA
Potential XSS vulnerability in jQuery
ghsa·2020-04-29
CVE-2020-11023 [MEDIUM] CWE-79 Potential XSS vulnerability in jQuery
Potential XSS vulnerability in jQuery
### Impact
Passing HTML containing `` elements from untrusted sources - even after sanitizing them - to one of jQuery's DOM manipulation methods (i.e. `.html()`, `.append()`, and others) may execute untrusted code.
### Patches
This problem is patched in jQuery 3.5.0.
### Workarounds
To workaround this issue without upgrading, use [DOMPurify](https://github.com/cure53/DOMPurify) with its `SAFE_FOR_JQUERY` option to sanitize the HTML string before passing it to a jQuery method.
### References
https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/
### For more information
If you have any questions or comments about this advisory, search for a relevant issue in [the jQuery repo](https://github.com/jquery/jquery/issues). If you don't find an answer,
VulnCheck
JQuery Cross-Site Scripting (XSS) Vulnerability
vulncheck·2020·CVSS 6.9
CVE-2020-11023 [MEDIUM] CWE-79 JQuery Cross-Site Scripting (XSS) Vulnerability
JQuery Cross-Site Scripting (XSS) Vulnerability
JQuery contains a persistent cross-site scripting (XSS) vulnerability. When passing maliciously formed, untrusted input enclosed in HTML tags, JQuery's DOM manipulators can execute untrusted code in the context of the user's browser.
Affected: JQuery JQuery
Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Exploitation References: https://www.tenable.com/blog/daisy-chaining-how-vulnerabilities-can-be-greater-than-the-sum-of-their-parts; https://www.securin.io/wp-content/uploads/2023/08/2023-State-of-Cybersecurity-for-Medical-Devices-and-Healthcare-Systems.pdf; https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json; https://www.trustwave
No detection rules found.
Bugzilla
CVE-2020-11023 pcs: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-09-24·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 pcs: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 pcs: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit m
Bugzilla
CVE-2020-11023 python-tw2-jquery: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-6]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-tw2-jquery: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-6]
CVE-2020-11023 python-tw2-jquery: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg co
Bugzilla
CVE-2020-11023 python-XStatic-jQuery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jQuery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 python-XStatic-jQuery: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and t
Bugzilla
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-7]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-7]
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fe
Bugzilla
CVE-2020-11023 python-tw2-jquery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-tw2-jquery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
CVE-2020-11023 python-tw2-jquery: jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discus
Bugzilla
CVE-2020-11023 drupal7: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 drupal7: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 drupal7: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg comm
Bugzilla
CVE-2020-11023 js-jquery1: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 js-jquery1: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
CVE-2020-11023 js-jquery1: jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
U
Bugzilla
CVE-2020-11023 jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods
CVE-2020-11023 jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
References:
https://blog.jquery.com/2020/04/10/jquery-3-5-0-released
https://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6
https://jquery.com/upgrade-guide/3.5/
https://security.netapp.com/advisory/ntap-20200511-0006/
https://www.debian.org/security/2020/dsa-4693
https://www.drupal.org/sa-core-2020-002
Discussion:
Created drupal7 tracking bugs for this issue:
Affects: e
Bugzilla
CVE-2020-11023 rubygem-jquery-rails: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 rubygem-jquery-rails: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 rubygem-jquery-rails: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and th
Bugzilla
CVE-2020-11023 python-tw2-jquery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-tw2-jquery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 python-tw2-jquery: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
f
Bugzilla
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog an
Bugzilla
CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Di
Bugzilla
CVE-2020-11023 js-jquery1: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 js-jquery1: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 js-jquery1: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg c
Bugzilla
CVE-2020-11023 js-jquery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 js-jquery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [epel-7]
CVE-2020-11023 js-jquery: jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Us
Bugzilla
CVE-2020-11023 js-jquery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 js-jquery: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 js-jquery: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg co
Bugzilla
CVE-2020-11023 js-jquery2: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 js-jquery2: jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [fedora-all]
CVE-2020-11023 js-jquery2: jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg c
Bugzilla
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [openstack-rdo]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [openstack-rdo]
CVE-2020-11023 python-XStatic-jquery-ui: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [openstack-rdo]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of openstack-rdo.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM change
Bugzilla
CVE-2020-11023 drupal7: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-all]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 drupal7: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-all]
CVE-2020-11023 drupal7: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit m
Bugzilla
CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [openstack-rdo]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods [openstack-rdo]
CVE-2020-11023 python-XStatic-jQuery: jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods [openstack-rdo]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of openstack-rdo.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit
Bugzilla
CVE-2020-11023 python-tw-jquery: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-6]
bugzilla·2020-06-23·CVSS 6.9
CVE-2020-11023 [MEDIUM] CVE-2020-11023 python-tw-jquery: jQuery: passing HTML containing <option> elements to manipulation methods could result in untrusted code execution [epel-6]
CVE-2020-11023 python-tw-jquery: jQuery: passing HTML containing elements to manipulation methods could result in untrusted code execution [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg com
Tenable
Daisy Chaining: How Vulnerabilities Can Be Greater Than the Sum of Their Parts
blogs_tenable·2021-01-21
Daisy Chaining: How Vulnerabilities Can Be Greater Than the Sum of Their Parts
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Huntress
CVE-2020-11023 Vulnerability: Analysis, Detection, Removal | Huntress
blogs_huntress·CVSS 6.1
CVE-2020-11023 [MEDIUM] CVE-2020-11023 Vulnerability: Analysis, Detection, Removal | Huntress
## CVE-2020-11023 Vulnerability
Published: 12/16/2025
Written by: Nadine Rozell
## What is CVE-2020-11023 Vulnerability?
CVE-2020-11023 is a DOM-based cross-site scripting (XSS) vulnerability in jQuery's htmlPrefilter function. In plain English, the function, which is supposed to prepare HTML for insertion into the document, can be tricked into executing malicious code. Attackers can exploit this by crafting HTML that, when processed by a vulnerable version of jQuery, executes a malicious script in the user's browser. This is a classic XSS problem with a massive attack surface due to jQuery's ubiquity.
## When was it discovered?
The vulnerability was disclosed on May 28, 2020. The jQuery team released patches to address the issue, but since many websites run on older, "set-it-and-for
arXiv
SecScore: Enhancing the CVSS Threat Metric Group with Empirical Evidences
arxiv_fulltext·2024-05-14
SecScore: Enhancing the CVSS Threat Metric Group with Empirical Evidences
: Enhancing the CVSS Threat Metric Group with Empirical Evidences
Miguel Santana
Banco de PortugalPortugal
Vinicius V. Cogo
LASIGE, Informática, Faculdade de Ciências, Universidade de LisboaPortugal
Alan Oliveira de Sá
LASIGE, Informática, Faculdade de Ciências, Universidade de LisboaPortugal
printfolios=true
## Abstract
Background: Timely prioritising and remediating vulnerabilities are paramount in the dynamic cybersecurity field, and one of the most widely used vulnerability scoring systems (CVSS) does not address the increasing likelihood of emerging an exploit code.
Aims: We present , an innovative vulnerability severity score that enhances CVSS Threat metric group with statistical models from empirical evidences of real-world exploit codes.
Method: adjusts the traditional
http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00067.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00085.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-11/msg00039.htmlhttp://packetstormsecurity.com/files/162160/jQuery-1.0.3-Cross-Site-Scripting.htmlhttps://blog.jquery.com/2020/04/10/jquery-3-5-0-releasedhttps://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6https://jquery.com/upgrade-guide/3.5/https://lists.apache.org/thread.html/r0483ba0072783c2e1bfea613984bfb3c86e73ba8879d780dc1cc7d36%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r0593393ca1e97b1e7e098fe69d414d6bd0a467148e9138d07e86ebbb%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r07ab379471fb15644bf7a92e4a98cbc7df3cf4e736abae0cc7625fe6%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r094f435595582f6b5b24b66fedf80543aa8b1d57a3688fbcc21f06ec%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r1fed19c860a0d470f2a3eded12795772c8651ff583ef951ddac4918c%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r2c85121a47442036c7f8353a3724aa04f8ecdfda1819d311ba4f5330%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r3702ede0ff83a29ba3eb418f6f11c473d6e3736baba981a8dbd9c9ef%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r49ce4243b4738dd763caeb27fa8ad6afb426ae3e8c011ff00b8b1f48%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r4aadb98086ca72ed75391f54167522d91489a0d0ae25b12baa8fc7c5%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r4dba67be3239b34861f1b9cfdf9dfb3a90272585dcce374112ed6e16%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r54565a8f025c7c4f305355fdfd75b68eca442eebdb5f31c2e7d977ae%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r55f5e066cc7301e3630ce90bbbf8d28c82212ae1f2d4871012141494%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r564585d97bc069137e64f521e68ba490c7c9c5b342df5d73c49a0760%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r6c4df3b33e625a44471009a172dabe6865faec8d8f21cac2303463b1%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r6e97b37963926f6059ecc1e417721608723a807a76af41d4e9dbed49%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r706cfbc098420f7113968cc377247ec3d1439bce42e679c11c609e2d%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r8f70b0f65d6bedf316ecd899371fd89e65333bc988f6326d2956735c%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r9006ad2abf81d02a0ef2126bab5177987e59095b7194a487c4ea247c%40%3Ccommits.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r9c5fda81e4bca8daee305b4c03283dddb383ab8428a151d4cb0b3b15%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r9e0bd31b7da9e7403478d22652b8760c946861f8ebd7bd750844898e%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/ra32c7103ded9041c7c1cb8c12c8d125a6b2f3f3270e2937ef8417fac%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra374bb0299b4aa3e04edde01ebc03ed6f90cf614dad40dd428ce8f72%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra3c9219fcb0b289e18e9ec5a5ebeaa5c17d6b79a201667675af6721c%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra406b3adfcffcb5ce8707013bdb7c35e3ffc2776a8a99022f15274c6%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rab82dd040f302018c85bd07d33f5604113573514895ada523c3401d9%40%3Ccommits.hive.apache.org%3Ehttps://lists.apache.org/thread.html/radcb2aa874a79647789f3563fcbbceaf1045a029ee8806b59812a8ea%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rb25c3bc7418ae75cba07988dafe1b6912f76a9dd7d94757878320d61%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rb69b7d8217c1a6a2100247a5d06ce610836b31e3f5d73fc113ded8e7%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rbb448222ba62c430e21e13f940be4cb5cfc373cd3bce56b48c0ffa67%40%3Cdev.flink.apache.org%3Ehttps://lists.apache.org/thread.html/rd38b4185a797b324c8dd940d9213cf99fcdc2dbf1fc5a63ba7dee8c9%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679%40%3Ccommits.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/re4ae96fa5c1a2fe71ccbb7b7ac1538bd0cb677be270a2bf6e2f8d108%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/rede9cfaa756e050a3d83045008f84a62802fc68c17f2b4eabeaae5e4%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/ree3bd8ddb23df5fa4e372d11c226830ea3650056b1059f3965b3fce2%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/rf0f8939596081d84be1ae6a91d6248b96a02d8388898c372ac807817%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/rf1ba79e564fe7efc56aef7c986106f1cf67a3427d08e997e088e7a93%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rf661a90a15da8da5922ba6127b3f5f8194d4ebec8855d60a0dd13248%40%3Cdev.hive.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2021/03/msg00033.htmlhttps://lists.debian.org/debian-lts-announce/2023/08/msg00040.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AVKYXLWCLZBV2N7M46KYK4LVA5OXWPBY/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QPN2L2XVQGUA2V5HNQJWHK3APSK3VN7K/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SAPQVX3XDNPGFT26QAQ6AJIXZZBZ4CD4/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SFP4UK4EGP4AFH2MWYJ5A5Z4I7XVFQ6B/https://security.gentoo.org/glsa/202007-03https://security.netapp.com/advisory/ntap-20200511-0006/https://www.debian.org/security/2020/dsa-4693https://www.drupal.org/sa-core-2020-002https://www.oracle.com//security-alerts/cpujul2021.htmlhttps://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2022.htmlhttps://www.oracle.com/security-alerts/cpujan2021.htmlhttps://www.oracle.com/security-alerts/cpujan2022.htmlhttps://www.oracle.com/security-alerts/cpujul2020.htmlhttps://www.oracle.com/security-alerts/cpujul2022.htmlhttps://www.oracle.com/security-alerts/cpuoct2020.htmlhttps://www.oracle.com/security-alerts/cpuoct2021.htmlhttps://www.tenable.com/security/tns-2021-02https://www.tenable.com/security/tns-2021-10http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00067.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-07/msg00085.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-11/msg00039.htmlhttp://packetstormsecurity.com/files/162160/jQuery-1.0.3-Cross-Site-Scripting.htmlhttps://blog.jquery.com/2020/04/10/jquery-3-5-0-releasedhttps://github.com/github/advisory-database/blob/99afa6fdeaf5d1d23e1021ff915a5e5dbc82c1f1/advisories/github-reviewed/2020/04/GHSA-jpcq-cgw6-v4j6/GHSA-jpcq-cgw6-v4j6.json#L20-L37https://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6https://jquery.com/upgrade-guide/3.5/https://lists.apache.org/thread.html/r0483ba0072783c2e1bfea613984bfb3c86e73ba8879d780dc1cc7d36%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r0593393ca1e97b1e7e098fe69d414d6bd0a467148e9138d07e86ebbb%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r07ab379471fb15644bf7a92e4a98cbc7df3cf4e736abae0cc7625fe6%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r094f435595582f6b5b24b66fedf80543aa8b1d57a3688fbcc21f06ec%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r1fed19c860a0d470f2a3eded12795772c8651ff583ef951ddac4918c%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r2c85121a47442036c7f8353a3724aa04f8ecdfda1819d311ba4f5330%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r3702ede0ff83a29ba3eb418f6f11c473d6e3736baba981a8dbd9c9ef%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r49ce4243b4738dd763caeb27fa8ad6afb426ae3e8c011ff00b8b1f48%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r4aadb98086ca72ed75391f54167522d91489a0d0ae25b12baa8fc7c5%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r4dba67be3239b34861f1b9cfdf9dfb3a90272585dcce374112ed6e16%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r54565a8f025c7c4f305355fdfd75b68eca442eebdb5f31c2e7d977ae%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r55f5e066cc7301e3630ce90bbbf8d28c82212ae1f2d4871012141494%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r564585d97bc069137e64f521e68ba490c7c9c5b342df5d73c49a0760%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r6c4df3b33e625a44471009a172dabe6865faec8d8f21cac2303463b1%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r6e97b37963926f6059ecc1e417721608723a807a76af41d4e9dbed49%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r706cfbc098420f7113968cc377247ec3d1439bce42e679c11c609e2d%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r8f70b0f65d6bedf316ecd899371fd89e65333bc988f6326d2956735c%40%3Cissues.flink.apache.org%3Ehttps://lists.apache.org/thread.html/r9006ad2abf81d02a0ef2126bab5177987e59095b7194a487c4ea247c%40%3Ccommits.felix.apache.org%3Ehttps://lists.apache.org/thread.html/r9c5fda81e4bca8daee305b4c03283dddb383ab8428a151d4cb0b3b15%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/r9e0bd31b7da9e7403478d22652b8760c946861f8ebd7bd750844898e%40%3Cdev.felix.apache.org%3Ehttps://lists.apache.org/thread.html/ra32c7103ded9041c7c1cb8c12c8d125a6b2f3f3270e2937ef8417fac%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra374bb0299b4aa3e04edde01ebc03ed6f90cf614dad40dd428ce8f72%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra3c9219fcb0b289e18e9ec5a5ebeaa5c17d6b79a201667675af6721c%40%3Cgitbox.hive.apache.org%3Ehttps://lists.apache.org/thread.html/ra406b3adfcffcb5ce8707013bdb7c35e3ffc2776a8a99022f15274c6%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rab82dd040f302018c85bd07d33f5604113573514895ada523c3401d9%40%3Ccommits.hive.apache.org%3Ehttps://lists.apache.org/thread.html/radcb2aa874a79647789f3563fcbbceaf1045a029ee8806b59812a8ea%40%3Cissues.hive.apache.org%3Ehttps://lists.apache.org/thread.html/rb25c3bc7418ae75cba07988dafe1b6912f76a9dd7d94757878320d61%40%3Cgitbox.hive.apache.org%3E
+ 32 more references
2020-04-29
Published
2025-01-23
Added to CISA KEV
Exploited in the wild