Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-10923 | Versions of the package jquery-validation before 1.20.0 are vulnerable to Cross-site Scripting (XSS) in the showLabel() function, which may take input from a user-controlled placeholder value. This value will populate a message via $.validator.messages in a user localizable dictionary. |
Github GHSA |
GHSA-rrj2-ph5q-jxw2 | jquery-validation vulnerable to Cross-site Scripting |
Tue, 15 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | jquery-validation: XSS Vulnerability in jquery-validation | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 15 Apr 2025 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Versions of the package jquery-validation before 1.20.0 are vulnerable to Cross-site Scripting (XSS) in the showLabel() function, which may take input from a user-controlled placeholder value. This value will populate a message via $.validator.messages in a user localizable dictionary. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-15T15:03:53.661Z
Reserved: 2025-04-14T07:35:40.269Z
Link: CVE-2025-3573
No data.
Status : Deferred
Published: 2025-04-15T05:15:31.007
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-3573
OpenCVE Enrichment
No data.
EUVD
Github GHSA