Avast community forum
Home
Help
Search
Login
Register
Avast WEBforum
»
Other
»
Viruses and worms
(Moderators:
Maxx_original
,
misak
) »
Retirable code library where one should expect it least...
« previous
next »
Print
Pages: [
1
]
Go Down
Author
Topic: Retirable code library where one should expect it least... (Read 1036 times)
0 Members and 1 Guest are viewing this topic.
polonus
Avast Überevangelist
Probably Bot
Posts: 33897
malware fighter
Retirable code library where one should expect it least...
«
on:
January 18, 2019, 06:59:59 PM »
Where we found DOM-XSS sources and sinks: -https://cwe.mitre.org
Number of sources found: 2 ; number of sinks found: 73
and for -https://cwe.mitre.org/includes/cookie.js
Number of sources found: 41; number of sinks found: 17
Detected retirable jQuery library:
https://retire.insecurity.today/#!/scan/b8a47cdac5c7a2b93eb23e18897a6584fadba59e61c776218ad53552848d05e7
See:
https://snyk.io/vuln/npm:jquery
Also read here:
https://nvd.nist.gov/vuln/detail/CVE-2015-9251
This to be found on a National Vulnerability Database is unique.
Retirement of outdated and vulnerable jQuery script libraries should be done on a regular basis.
polonus (volunteer website security analyst and website error-hunter)
Logged
Cybersecurity is more of an attitude than anything else. Avast Evangelists.
Use NoScript, a limited user account and a virtual machine and be safe(r)!
Print
Pages: [
1
]
Go Up
« previous
next »
Avast WEBforum
»
Other
»
Viruses and worms
(Moderators:
Maxx_original
,
misak
) »
Retirable code library where one should expect it least...