CVE-2013-2022

medium
Published 2013-08-17 ยท Modified 2024-04-02
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
4.3

Description

jplayer Cross Site Scripting vulnerability

Predictions

Exploit likelihood
20%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Package impact

EcosystemPackageVulnerableFixed
npm npmjplayer<2.3.02.3.0

Application impact

VendorProductVersionsFixed
happywormjplayer{"endIncluding":"2.2.22"}
happywormjplayer0.2.1
happywormjplayer0.2.2
happywormjplayer0.2.3
happywormjplayer0.2.4
happywormjplayer0.2.5
happywormjplayer1.0.0
happywormjplayer1.1.0
happywormjplayer1.1.1
happywormjplayer1.2.0
happywormjplayer2.0.0
happywormjplayer2.0.1
happywormjplayer2.0.2
happywormjplayer2.0.3
happywormjplayer2.0.4
happywormjplayer2.0.5
happywormjplayer2.0.6
happywormjplayer2.0.7
happywormjplayer2.0.8
happywormjplayer2.0.9
happywormjplayer2.0.10
happywormjplayer2.0.11
happywormjplayer2.0.12
happywormjplayer2.0.13
happywormjplayer2.0.14
happywormjplayer2.0.15
happywormjplayer2.0.16
happywormjplayer2.0.17
happywormjplayer2.0.18
happywormjplayer2.0.19
happywormjplayer2.0.20
happywormjplayer2.0.21
happywormjplayer2.0.22
happywormjplayer2.0.23
happywormjplayer2.0.24
happywormjplayer2.0.25
happywormjplayer2.0.26
happywormjplayer2.0.27
happywormjplayer2.0.28
happywormjplayer2.0.29
happywormjplayer2.0.30
happywormjplayer2.0.31
happywormjplayer2.0.32
happywormjplayer2.0.33
happywormjplayer2.0.34
happywormjplayer2.0.35
happywormjplayer2.0.36
happywormjplayer2.1.0
happywormjplayer2.1.1
happywormjplayer2.1.2
happywormjplayer2.1.3
happywormjplayer2.1.4
happywormjplayer2.1.5
happywormjplayer2.1.6
happywormjplayer2.2.0
happywormjplayer2.2.1
happywormjplayer2.2.2
happywormjplayer2.2.10
happywormjplayer2.2.11
happywormjplayer2.2.12
happywormjplayer2.2.13
happywormjplayer2.2.14
happywormjplayer2.2.15
happywormjplayer2.2.16
happywormjplayer2.2.17
happywormjplayer2.2.18
happywormjplayer2.2.19
happywormjplayer2.2.20
happywormjplayer2.2.21

References

CWEs

CWE-79

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.