OsVault/npm/jquery
npm1 critical

jquery

55 known vulnerabilities · 1 critical · 4 high

CVE-2011-4969MEDIUM

jQuery vulnerable to Cross-Site Scripting (XSS)

Published May 14, 2022
CVE-2020-7656MEDIUM

Cross-Site Scripting in jquery

Published May 20, 2020
CVE-2020-11023MEDIUM

Potential XSS vulnerability in jQuery

Published Apr 29, 2020
CVE-2012-6708MEDIUM

Cross-Site Scripting in jquery

Published Sep 1, 2020
CVE-2019-11358MEDIUM

XSS in jQuery as used in Drupal, Backdrop CMS, and other products

Published Apr 26, 2019
GHSA-wv67-q8rr-grjp

Duplicate Advisory: Prototype Pollution in jquery

Published Apr 23, 2019
CVE-2020-11022MEDIUM

Potential XSS vulnerability in jQuery

Published Apr 29, 2020
CVE-2015-9251MEDIUM

Cross-Site Scripting (XSS) in jquery

Published Jan 22, 2018
GHSA-257q-pv89-v3xv

Duplicate Advisory: jQuery Cross Site Scripting vulnerability

Published Jun 26, 2023
CVE-2021-41182MEDIUM

XSS in the `altField` option of the Datepicker widget in jquery-ui

Published Oct 26, 2021
CVE-2021-37504MEDIUM

jQuery-Upload-File XSS in fileNameStr

Published Feb 26, 2022
GHSA-g8q2-24jh-5hpc

High severity vulnerability that affects jquery-ui

Published Jul 27, 2018
CVE-2022-1291MEDIUM

Cross-site Scripting in tableexport.jquery.plugin

Published Apr 11, 2022
CVE-2022-31160MEDIUM

jQuery UI vulnerable to XSS when refreshing a checkboxradio with an HTML-like initial text label

Published Jul 18, 2022
CVE-2012-6662MEDIUM

jquery-ui Tooltip widget vulnerable to XSS

Published Oct 24, 2017
CVE-2010-5312MEDIUM

Cross-site Scripting in jquery-ui

Published Oct 24, 2017
CVE-2016-7103MEDIUM

jQuery-UI vulnerable to Cross-site Scripting in dialog closeText

Published Oct 24, 2017
MAL-2024-11237

Malicious code in jquery.slideviewer (npm)

Published Dec 8, 2024
CVE-2021-41183MEDIUM

XSS in `*Text` options of the Datepicker widget in jquery-ui

Published Oct 26, 2021
MAL-2024-7428

Malicious code in cdnjquery (npm)

Published Jul 8, 2024
CVE-2017-1000170HIGH

jqueryFileTree vulnerable to Directory Traversal

Published May 13, 2022
CVE-2021-41184MEDIUM

XSS in the `of` option of the `.position()` util in jquery-ui

Published Oct 26, 2021
CVE-2022-31147HIGH

jquery-validation Regular Expression Denial of Service due to arbitrary input to url2 method

Published Jul 5, 2022
MAL-2025-2163

Malicious code in alexpavlov--jquery-suggestable (npm)

Published Mar 5, 2025
CVE-2021-21252MEDIUM

Regular Expression Denial of Service in jquery-validation

Published Jan 13, 2021
CVE-2021-20083HIGH

jquery-plugin-query-object contains prototype pollution vulnerability

Published May 24, 2022
CVE-2018-9207CRITICAL

Unrestricted Upload of File with Dangerous Type in jquery-file-upload

Published Dec 19, 2018
CVE-2017-16045HIGH

jquery.js is malware

Published Jul 23, 2018
MAL-2025-1488

Malicious code in jquery.validate.additional-methods-br (npm)

Published Feb 19, 2025
CVE-2021-43862LOW

jquery.terminal self XSS on user input

Published Jan 6, 2022
MAL-2022-7195

Malicious code in wm-jquery (npm)

Published Jun 20, 2022
CVE-2025-3573

jquery-validation vulnerable to Cross-site Scripting

Published Apr 15, 2025
MAL-2025-1487

Malicious code in jquery-real (npm)

Published Feb 19, 2025
CVE-2022-30241MEDIUM

Cross-site Scripting in jquery.json-viewer

Published May 5, 2022
MAL-2025-4365

Malicious code in jquery.currencies (npm)

Published May 23, 2025
CVE-2021-32850MEDIUM

@claviska/jquery-minicolors vulnerable to Cross-site Scripting

Published Feb 21, 2023
MAL-2024-2565

Malicious code in jquery-dragster (npm)

Published Jun 25, 2024
MAL-2024-7711

Malicious code in jqueryxxx (npm)

Published Jul 11, 2024
MAL-2025-191113

Malicious code in jquery-bindings (npm)

Published Nov 24, 2025
MAL-2023-550

Malicious code in karma-jquery2 (npm)

Published Jan 30, 2023
MAL-2023-537

Malicious code in jquery-mask (npm)

Published Feb 20, 2023
MAL-2023-538

Malicious code in jquery.select2 (npm)

Published Jun 3, 2023
MAL-2023-552

Malicious code in kbwood-jquery-svg (npm)

Published Jun 6, 2023
MAL-2024-1576

Malicious code in code.jquery.ajax (npm)

Published Jun 11, 2024
MAL-2026-521

Malicious code in hammer-jquery (npm)

Published Jan 27, 2026
MAL-2025-48608

Malicious code in jquery-ui-source (npm)

Published Oct 26, 2025
MAL-2022-4050

Malicious code in jquery-lh (npm)

Published Jun 20, 2022
MAL-2022-4051

Malicious code in jquery-querybuilder (npm)

Published Jun 20, 2022
MAL-2022-4052

Malicious code in jquery_ui_checkbowwx (npm)

Published Nov 7, 2022
MAL-2022-4053

Malicious code in jquery_ui_checkbox (npm)

Published Nov 7, 2022
MAL-2024-9054

Malicious code in jquery-ui-smoothness (npm)

Published Sep 30, 2024
MAL-2022-7196

Malicious code in wm-jquery-shadow-dom (npm)

Published Jun 20, 2022
MAL-2026-1095

Malicious code in jquery-display (npm)

Published Mar 1, 2026
MAL-2025-2178

Malicious code in jquery-suggestable (npm)

Published Mar 5, 2025
MAL-2026-436

Malicious code in jquery-ajaxchimp (npm)

Published Jan 21, 2026
Check your entire dependency tree at onceRun dependency scan →