Security Advisory

CVE-2016-10707

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-18 23:00:00
Last updated 2024-08-06 03:30:20
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.