The jQuery UI is vulnerable to cross-site scripting, which is caused by improper validation of user-supplied input as well as input by the default content. A remote attacker could exploit this vulnerability using the title parameter in a specially-crafted URL...
from IBM Product Security Incident Response Team http://ift.tt/1bmIU97
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.