Known vulnerabilities in dojox
Vendor:
JS Foundation
Software:
dojox
Software CPE:
cpe:2.3:a:js_foundation:dojox:*:*:*:*:*:dojo:*:*
Website:
https://js.foundation/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.9
Breakdown by Severity Chart
1.17.3
1.17.2
1.17.1
1.17.0
1.16.5
1.15.6
1.14.9
1.13.10
1.12.11
1.11.13
1.11.12
1.12.10
1.13.9
1.14.8
1.15.5
1.16.4
1.11.11
1.12.9
1.13.8
1.14.7
1.15.4
1.16.3
1.14.6
1.15.3
1.16.2
1.11.10
1.12.8
1.13.7
1.16.1
1.16.0
1.15.2
1.15.1
1.15.0
1.14.5
1.14.4
1.14.3
1.14.2
1.14.1
1.14.0
1.13.6
1.13.5
1.13.4
1.13.3
1.13.2
1.13.1
1.13.0
1.12.7
1.12.6
1.12.5
1.12.4
1.12.3
1.12.2
1.12.1
1.12.0
1.11.9
1.11.8
1.11.7
1.11.6
1.11.5
1.11.4
1.11.3
1.11.2
1.11.1
1.11.0
1.10.10
1.10.9
1.10.8
1.10.7
1.10.6
1.10.5
1.10.4
1.10.3
1.10.2
1.10.1
1.10.0
1.9.11
1.9.10
1.9.9
1.9.8
1.9.7
1.9.6
1.9.5
1.9.4
1.9.3
1.9.2
1.9.1
1.9.0
1.8.14
1.8.13
1.8.12
1.8.11
1.8.10
1.8.9
1.8.8
1.8.7
1.8.6
1.8.5
1.8.4
1.8.3
1.8.2
1.8.1
1.8.0
1.7.12
1.7.11
1.7.10
1.7.9
1.7.8
1.7.7
1.7.6
1.7.5
1.7.4
1.7.3
1.7.2
1.7.1
1.7.0
1.6.5
1.6.4
1.6.3
1.6.2
1.6.1
1.6.0
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5.0
1.4.8
1.4.7
1.4.6
1.4.5
1.4.4
1.4.3
1.4.2
1.4.1
1.4.0
1.3.3
1.3.2
1.3.1
1.3.0
1.2.4
1.2.3
1.2.2
1.2.1
1.2.0
1.1.2
1.1.1
1.1.0
1.0.3
1.0.2
1.0.1
1.0.0
0.9.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU66748 - Improper Control of Generation of Code ('Code Injection') CVE-2020-5259 |
CWE-94 | Medium | 1.11.10, 1.12.8, 1.13.7, 1.14.6, 1.15.3, 1.16.2 | 24.08.2022 |
SB20200310151 SB2022082433 SB2023031611 and 8 more |
||
| #VU25348 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2019-10785 |
CWE-79 | Low | 1.11.9, 1.12.7, 1.13.6, 1.14.5, 1.15.2, 1.16.1 | 14.02.2020 |
SB2020021405 SB2022082433 SB2023040530 and 7 more |