CVE-2016-10707
18.01.2018, 23:29
jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.Enginsight
Vendor | Product | Version |
---|---|---|
jquery | jquery | 3.0.0:rc1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration