Inadequate/dangerous jQuery behavior
Low
G
Gratipay
Submitted None
Actions:
Reported by
mhashim29
Vulnerability Details
Technical details and impact analysis
Every text/javascript response gets executed. JQuery 1.10.2 is vulnerable and executes response received.
https://assets.gratipay.com/jquery.min.js?etag=YoBy5yEtsejNrLIrIXUs2g~~
https://github.com/jquery/jquery/issues/2432
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Violation of Secure Design Principles