Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.

Published: 2013-03-08

CVSS: 4.3

CVSS Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Download CVE-2011-4969 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-282-cve-2016-0800/

https://connollyfinan.ie/poc-614-cve-2016-7117/