CVE-2015-6584: XSS
Published Sep 11, 2015
·Updated
Cross-site scripting (XSS) vulnerability in the DataTables plugin 1.10.8 and earlier for jQuery allows remote attackers to inject arbitrary web script or HTML via the scripts parameter to media/unittesting/templates/6776.php.
Affected Software
3 affected componentsFixes available
composer/datatables/datatables<1.10.10
1.10.10
npm/datatables<1.10.10
1.10.10
Sprymedia Datatables Jquery<=1.10.8
Event History
Sep 11, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Aug 31, 2020
Advisory Published
10:42 PM
Frequently Asked Questions
1
What is the severity of CVE-2015-6584?
CVE-2015-6584 is classified as a high severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2015-6584?
To fix CVE-2015-6584, upgrade the DataTables plugin to version 1.10.10 or later.
3
Who is affected by CVE-2015-6584?
CVE-2015-6584 affects versions of the DataTables plugin up to and including 1.10.8 for jQuery.
4
What type of vulnerability is CVE-2015-6584?
CVE-2015-6584 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts.
5
Can CVE-2015-6584 affect my website's security?
Yes, CVE-2015-6584 can compromise your website's security by allowing attackers to execute malicious scripts.