CVE-2021-36713
packagist/datatables/datatables
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Cross Site Scripting (XSS) vulnerability in the DataTables plug-in 1.9.2 for jQuery allows attackers to run arbitrary code via the sBaseName parameter to function _fnCreateCookie
. NOTE: 1.9.2 is a version from 2012.
Version 1.9.2
Upgrade to version 1.10.0 or above.
2023-03-14
source |