Bug#1085379: jqueryui: CVE-2024-30875

2024-10-22 Thread Paul Gevers
Control: forwarded -1 https://github.com/jquery/jquery-ui/issues/2305 Hi, On 18-10-2024 19:09, Moritz Mühlenhoff wrote: The only reference is https://github.com/Ant1sec-ops/CVE-2024-30875, this was probably never reported upstream. Apparently somebody did so yesterday. If I read the comment [

Bug#1085379: jqueryui: CVE-2024-30875

2024-10-18 Thread Moritz Mühlenhoff
Source: jqueryui X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for jqueryui. CVE-2024-30875[0]: | Cross Site Scripting vulnerability in JavaScript Library jquery-ui | v.1.13.1 allows a remote attacker to obtain sensitive i