Miggo Logo

CVE-2020-7656:
Cross-Site Scripting in jquery

6.1

CVSS Score
3.1

Basic Information

EPSS Score
0.77111%
Published
5/20/2020
Updated
10/10/2024
KEV Status
No
Technology
TechnologyRuby

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
jquery-railsrubygems< 2.2.02.2.0
jquerynpm>= 1.2.1, < 1.9.01.9.0
jQuerynuget>= 1.2.1, < 1.9.01.9.0
org.webjars.npm:jquerymaven>= 1.2.1, < 1.9.01.9.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

V*rsions o* `jqu*ry` prior to *.*.* *r* vuln*r**l* to *ross-Sit* S*riptin*. T** lo** m*t*o* **ils to r**o*niz* *n* r*mov* `<s*ript>` *TML t**s t**t *ont*in * w*it*sp*** ***r**t*r, i.*: `</s*ript >`, w*i** r*sults in t** *n*los** s*ript lo*i* to ** *x

Reasoning

No *n*lysis *v*il**l*