CVE-2021-36713: XSS
Published Mar 6, 2023
·Updated
Cross Site Scripting (XSS) vulnerability in the DataTables plug-in 1.9.2 for jQuery allows attackers to run arbitrary code via the sBaseName parameter to function fnCreateCookie. NOTE: 1.9.2 is a version from 2012.
Affected Software
1 affected component
Sprymedia Datatables Jquery=1.9.2
Event History
Mar 6, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-36713?
CVE-2021-36713 is considered a moderate severity Cross Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2021-36713?
To fix CVE-2021-36713, upgrade the DataTables plug-in to a newer version that addresses this vulnerability.
3
What is affected by CVE-2021-36713?
CVE-2021-36713 affects the Sprymedia DataTables plug-in version 1.9.2 for jQuery.
4
Can CVE-2021-36713 be exploited remotely?
Yes, CVE-2021-36713 can be exploited remotely by attackers to run arbitrary code.
5
Is CVE-2021-36713 still a concern for users of DataTables?
Yes, users of DataTables version 1.9.2 need to be aware of CVE-2021-36713 if they have not updated to a secure version.