Description
** DISPUTED ** jQuery v2.2.2 allows XSS via a crafted onerror attribute of an IMG element. NOTE: this vulnerability has been reported to be spam entry.
Remediation
References
Related Vulnerabilities
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-44967)
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-29004)
Oracle Database Server CVE-2013-1519 Vulnerability (CVE-2013-1519)
PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1901)