Vulnerability Details CVE-2018-1325
In Apache wicket-jquery-ui <= 6.29.0, <= 7.10.1, <= 8.0.0-M9.1, JS code created in WYSIWYG editor will be executed on display.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.2%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2018-1325
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.0.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.1.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.1.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.10.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.11.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.12.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.13.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.13.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.14.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.15.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.16.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.17.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.18.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.18.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.19.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.19.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.19.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.19.3
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.2.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.2.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.2.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.20.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.20.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.20.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.20.3
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.21.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.21.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.21.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.22.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.22.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.22.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.23.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.24.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.25.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.25.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.26.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.27.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.28.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.28.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.29.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.7.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.8.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.8.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.9.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:6.9.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.0.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.0.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.0.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.1.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.10.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.10.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.2.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.2.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.3.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.3.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.4.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.5.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.6.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.7.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.8.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.9.0
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.9.1
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:7.9.2
-
cpe:2.3:a:wicket-jquery-ui_project:wicket-jquery-ui:8.0.0