vulnerability
Red Hat: CVE-2020-11023: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | 2020-04-29 | 2020-11-05 | 2025-03-17 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
2020-04-29
Added
2020-11-05
Modified
2025-03-17
Description
In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing
Solution(s)
redhat-upgrade-apache-commons-collectionsredhat-upgrade-apache-commons-langredhat-upgrade-apache-commons-netredhat-upgrade-bea-stax-apiredhat-upgrade-bind-dyndb-ldapredhat-upgrade-bind-dyndb-ldap-debuginforedhat-upgrade-bind-dyndb-ldap-debugsourceredhat-upgrade-cppredhat-upgrade-cpp-debuginforedhat-upgrade-cross-gcc-aarch64-debuginforedhat-upgrade-cross-gcc-c-aarch64-debuginforedhat-upgrade-custodiaredhat-upgrade-doxygenredhat-upgrade-doxygen-debuginforedhat-upgrade-doxygen-debugsourceredhat-upgrade-doxygen-doxywizardredhat-upgrade-doxygen-doxywizard-debuginforedhat-upgrade-doxygen-latexredhat-upgrade-gccredhat-upgrade-gcc-credhat-upgrade-gcc-c-debuginforedhat-upgrade-gcc-debuginforedhat-upgrade-gcc-debugsourceredhat-upgrade-gcc-gdb-pluginredhat-upgrade-gcc-gdb-plugin-debuginforedhat-upgrade-gcc-gfortranredhat-upgrade-gcc-gfortran-debuginforedhat-upgrade-gcc-offload-nvptxredhat-upgrade-gcc-offload-nvptx-debuginforedhat-upgrade-gcc-plugin-annobinredhat-upgrade-gcc-plugin-annobin-debuginforedhat-upgrade-gcc-plugin-develredhat-upgrade-gcc-plugin-devel-debuginforedhat-upgrade-gcc-toolset-13-gccredhat-upgrade-gcc-toolset-13-gcc-credhat-upgrade-gcc-toolset-13-gcc-c-debuginforedhat-upgrade-gcc-toolset-13-gcc-debuginforedhat-upgrade-gcc-toolset-13-gcc-gfortranredhat-upgrade-gcc-toolset-13-gcc-gfortran-debuginforedhat-upgrade-gcc-toolset-13-gcc-plugin-annobinredhat-upgrade-gcc-toolset-13-gcc-plugin-annobin-debuginforedhat-upgrade-gcc-toolset-13-gcc-plugin-develredhat-upgrade-gcc-toolset-13-gcc-plugin-devel-debuginforedhat-upgrade-gcc-toolset-13-libasan-develredhat-upgrade-gcc-toolset-13-libatomic-develredhat-upgrade-gcc-toolset-13-libgccjitredhat-upgrade-gcc-toolset-13-libgccjit-debuginforedhat-upgrade-gcc-toolset-13-libgccjit-develredhat-upgrade-gcc-toolset-13-libitm-develredhat-upgrade-gcc-toolset-13-liblsan-develredhat-upgrade-gcc-toolset-13-libquadmath-develredhat-upgrade-gcc-toolset-13-libstdc-develredhat-upgrade-gcc-toolset-13-libstdc-docsredhat-upgrade-gcc-toolset-13-libtsan-develredhat-upgrade-gcc-toolset-13-libubsan-develredhat-upgrade-gcc-toolset-13-offload-nvptxredhat-upgrade-gcc-toolset-13-offload-nvptx-debuginforedhat-upgrade-gcc-toolset-14-gccredhat-upgrade-gcc-toolset-14-gcc-credhat-upgrade-gcc-toolset-14-gcc-c-debuginforedhat-upgrade-gcc-toolset-14-gcc-debuginforedhat-upgrade-gcc-toolset-14-gcc-gfortranredhat-upgrade-gcc-toolset-14-gcc-gfortran-debuginforedhat-upgrade-gcc-toolset-14-gcc-plugin-annobinredhat-upgrade-gcc-toolset-14-gcc-plugin-annobin-debuginforedhat-upgrade-gcc-toolset-14-gcc-plugin-develredhat-upgrade-gcc-toolset-14-gcc-plugin-devel-debuginforedhat-upgrade-gcc-toolset-14-libasan-develredhat-upgrade-gcc-toolset-14-libatomic-develredhat-upgrade-gcc-toolset-14-libgccjitredhat-upgrade-gcc-toolset-14-libgccjit-debuginforedhat-upgrade-gcc-toolset-14-libgccjit-develredhat-upgrade-gcc-toolset-14-libitm-develredhat-upgrade-gcc-toolset-14-liblsan-develredhat-upgrade-gcc-toolset-14-libquadmath-develredhat-upgrade-gcc-toolset-14-libstdc-develredhat-upgrade-gcc-toolset-14-libstdc-docsredhat-upgrade-gcc-toolset-14-libtsan-develredhat-upgrade-gcc-toolset-14-libubsan-develredhat-upgrade-gcc-toolset-14-offload-nvptxredhat-upgrade-gcc-toolset-14-offload-nvptx-debuginforedhat-upgrade-glassfish-fastinfosetredhat-upgrade-glassfish-jaxb-apiredhat-upgrade-glassfish-jaxb-coreredhat-upgrade-glassfish-jaxb-runtimeredhat-upgrade-glassfish-jaxb-txw2redhat-upgrade-ipa-clientredhat-upgrade-ipa-client-commonredhat-upgrade-ipa-client-debuginforedhat-upgrade-ipa-client-epnredhat-upgrade-ipa-client-sambaredhat-upgrade-ipa-commonredhat-upgrade-ipa-debuginforedhat-upgrade-ipa-debugsourceredhat-upgrade-ipa-healthcheckredhat-upgrade-ipa-healthcheck-coreredhat-upgrade-ipa-python-compatredhat-upgrade-ipa-selinuxredhat-upgrade-ipa-serverredhat-upgrade-ipa-server-commonredhat-upgrade-ipa-server-debuginforedhat-upgrade-ipa-server-dnsredhat-upgrade-ipa-server-trust-adredhat-upgrade-ipa-server-trust-ad-debuginforedhat-upgrade-jackson-annotationsredhat-upgrade-jackson-coreredhat-upgrade-jackson-databindredhat-upgrade-jackson-jaxrs-json-providerredhat-upgrade-jackson-jaxrs-providersredhat-upgrade-jackson-module-jaxb-annotationsredhat-upgrade-jakarta-commons-httpclientredhat-upgrade-javassistredhat-upgrade-javassist-javadocredhat-upgrade-jssredhat-upgrade-jss-debuginforedhat-upgrade-jss-debugsourceredhat-upgrade-jss-javadocredhat-upgrade-ldapjdkredhat-upgrade-ldapjdk-javadocredhat-upgrade-libasanredhat-upgrade-libasan-debuginforedhat-upgrade-libasan8redhat-upgrade-libasan8-debuginforedhat-upgrade-libatomicredhat-upgrade-libatomic-debuginforedhat-upgrade-libatomic-staticredhat-upgrade-libgccredhat-upgrade-libgcc-debuginforedhat-upgrade-libgccjitredhat-upgrade-libgccjit-debuginforedhat-upgrade-libgccjit-develredhat-upgrade-libgfortranredhat-upgrade-libgfortran-debuginforedhat-upgrade-libgfortran-staticredhat-upgrade-libgompredhat-upgrade-libgomp-debuginforedhat-upgrade-libgomp-offload-nvptxredhat-upgrade-libgomp-offload-nvptx-debuginforedhat-upgrade-libhwasan-debuginforedhat-upgrade-libitmredhat-upgrade-libitm-debuginforedhat-upgrade-libitm-develredhat-upgrade-liblsanredhat-upgrade-liblsan-debuginforedhat-upgrade-libquadmathredhat-upgrade-libquadmath-debuginforedhat-upgrade-libquadmath-develredhat-upgrade-libquadmath-staticredhat-upgrade-libstdcredhat-upgrade-libstdc-debuginforedhat-upgrade-libstdc-develredhat-upgrade-libstdc-docsredhat-upgrade-libstdc-staticredhat-upgrade-libtsanredhat-upgrade-libtsan-debuginforedhat-upgrade-libtsan2redhat-upgrade-libtsan2-debuginforedhat-upgrade-libubsanredhat-upgrade-libubsan-debuginforedhat-upgrade-opendnssecredhat-upgrade-opendnssec-debuginforedhat-upgrade-opendnssec-debugsourceredhat-upgrade-pcsredhat-upgrade-pcs-debuginforedhat-upgrade-pcs-snmpredhat-upgrade-pki-baseredhat-upgrade-pki-base-javaredhat-upgrade-pki-caredhat-upgrade-pki-core-debuginforedhat-upgrade-pki-core-debugsourceredhat-upgrade-pki-kraredhat-upgrade-pki-serverredhat-upgrade-pki-servlet-4-0-apiredhat-upgrade-pki-servlet-engineredhat-upgrade-pki-symkeyredhat-upgrade-pki-symkey-debuginforedhat-upgrade-pki-toolsredhat-upgrade-pki-tools-debuginforedhat-upgrade-python-nss-debugsourceredhat-upgrade-python-nss-docredhat-upgrade-python2-ipaclientredhat-upgrade-python2-ipalibredhat-upgrade-python2-ipaserverredhat-upgrade-python3-custodiaredhat-upgrade-python3-ipaclientredhat-upgrade-python3-ipalibredhat-upgrade-python3-ipaserverredhat-upgrade-python3-ipatestsredhat-upgrade-python3-jwcryptoredhat-upgrade-python3-kdcproxyredhat-upgrade-python3-nssredhat-upgrade-python3-nss-debuginforedhat-upgrade-python3-pkiredhat-upgrade-python3-pyusbredhat-upgrade-python3-qrcoderedhat-upgrade-python3-qrcode-coreredhat-upgrade-python3-tbbredhat-upgrade-python3-tbb-debuginforedhat-upgrade-python3-yubicoredhat-upgrade-relaxngdatatyperedhat-upgrade-resteasyredhat-upgrade-slapi-nisredhat-upgrade-slapi-nis-debuginforedhat-upgrade-slapi-nis-debugsourceredhat-upgrade-slf4jredhat-upgrade-slf4j-jdk14redhat-upgrade-softhsmredhat-upgrade-softhsm-debuginforedhat-upgrade-softhsm-debugsourceredhat-upgrade-softhsm-develredhat-upgrade-stax-exredhat-upgrade-tbbredhat-upgrade-tbb-debuginforedhat-upgrade-tbb-debugsourceredhat-upgrade-tbb-develredhat-upgrade-tbb-docredhat-upgrade-tomcatjssredhat-upgrade-velocityredhat-upgrade-xalan-j2redhat-upgrade-xerces-j2redhat-upgrade-xml-commons-apisredhat-upgrade-xml-commons-resolverredhat-upgrade-xmlstreambufferredhat-upgrade-xsom
References
- NVD-CVE-2020-11023
- REDHAT-RHSA-2020:4847
- REDHAT-RHSA-2021:0860
- REDHAT-RHSA-2021:1846
- REDHAT-RHSA-2021:4142
- REDHAT-RHSA-2022:7343
- REDHAT-RHSA-2025:1185
- REDHAT-RHSA-2025:1209
- REDHAT-RHSA-2025:1210
- REDHAT-RHSA-2025:1211
- REDHAT-RHSA-2025:1214
- REDHAT-RHSA-2025:1215
- REDHAT-RHSA-2025:1247
- REDHAT-RHSA-2025:1300
- REDHAT-RHSA-2025:1301
- REDHAT-RHSA-2025:1303
- REDHAT-RHSA-2025:1304
- REDHAT-RHSA-2025:1306
- REDHAT-RHSA-2025:1309
- REDHAT-RHSA-2025:1311
- REDHAT-RHSA-2025:1314
- REDHAT-RHSA-2025:1315
- REDHAT-RHSA-2025:1329
- REDHAT-RHSA-2025:1338
- REDHAT-RHSA-2025:1342
- REDHAT-RHSA-2025:1346

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.