ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-7656”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-7656
Published
2020-05-19
CVSS:
6.1
ShadowTrackr CVSS:
1.2
Summary:
jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove "<script>" HTML tags that contain a whitespace character, i.e: "</script >", which results in the enclosed script logic to be executed.