Critical jQuery Flaw Under Active Attack Added to CISA’s High-Risk List
CISA adds jQuery vulnerability CVE-2020-11023 to Known Exploited Vulnerabilities catalog. The medium-severity XSS flaw enables arbitrary code execution through HTML manipulation and is actively exploited. Patched in jQuery 3.5.0, organizations can use DOMPurify as temporary mitigation. Fed...
