Vulnerabilities > Wicket Jquery UI Project > Wicket Jquery UI > 1.4.2

DATE CVE VULNERABILITY TITLE RISK
2018-03-12 CVE-2017-15719 Cross-site Scripting vulnerability in Wicket-Jquery-Ui Project Wicket-Jquery-Ui
In Wicket jQuery UI 6.28.0 and earlier, 7.9.1 and earlier, and 8.0.0-M8 and earlier, a security issue has been discovered in the WYSIWYG editor that allows an attacker to submit arbitrary JS code to WYSIWYG editor.
4.3