Information on source package jquery

Available versions

ReleaseVersion
jessie1.7.2+dfsg-3.2+deb8u7
stretch3.1.1-2+deb9u2
buster3.3.1~dfsg-3+deb10u1

Open issues

BugjessiestretchbusterDescription
CVE-2020-7656vulnerable (no DSA, ignored)fixedfixedjquery prior to 1.9.0 allows Cross-site Scripting attacks via the load ...
CVE-2015-9251vulnerable (no DSA, ignored)fixedfixedjQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attack ...
CVE-2012-6708vulnerable (no DSA, ignored)fixedfixedjQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attack ...

Open unimportant issues

BugjessiestretchbusterDescription
CVE-2018-18405vulnerablevulnerablevulnerablejQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG ele ...
CVE-2007-2379vulnerablevulnerablevulnerableThe jQuery framework exchanges data using JavaScript Object Notation ( ...

Resolved issues

BugDescription
CVE-2020-11023In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, pa ...
CVE-2020-11022In jQuery versions greater than or equal to 1.2 and before 3.5.0, pass ...
CVE-2019-11358jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other produc ...
CVE-2016-10707jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to remo ...
CVE-2014-6071jQuery 1.4.2 allows remote attackers to conduct cross-site scripting ( ...
CVE-2011-4969Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when ...
CVE-2008-7220Unspecified vulnerability in Prototype JavaScript framework (prototype ...

Security announcements

DSA / DLADescription
DLA-2608-1jquery - security update
DLA-1777-2jquery - regression update
DLA-1777-1jquery - security update
ELA-109-1jquery - security update

Search for package or bug name: Reporting problems