VDB

CVE-2021-32850

CVE-2021-32850 PUBLISHED

jQuery MiniColors is a color picker built on jQuery. Prior to version 2.3.6, jQuery MiniColors is prone to cross-site scripting when handling untrusted color names. This issue is patched in version 2.3.6.

EPSS 0.55% · 68.4th percentile

Risk Scores

EPSS Score
0.55%
68.4th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSjquery-minicolors0, *, 2.3.6+dfsg-1
Ubuntu:18.04:LTSjquery-minicolors*, 0, 2.2.6+dfsg-3
Ubuntu:22.04:LTSjquery-minicolors0, 2.3.5+dfsg-1, *
Ubuntu:20.04:LTSjquery-minicolors*, 0
Ubuntu:16.04:LTSjquery-minicolors1.2.1-1, 0
Ubuntu:25.10jquery-minicolors2.3.6+dfsg-1, 0

Timeline

  • Feb 20, 2023 CVE Published
  • Feb 21, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 1, 2023 EPSS Score
  • May 11, 2023 EPSS Score
  • Jun 19, 2023 EPSS Score
  • Jul 29, 2023 EPSS Score
  • Sep 6, 2023 EPSS Score
  • Oct 16, 2023 EPSS Score
  • Nov 24, 2023 EPSS Score
  • Jan 3, 2024 EPSS Score
  • Feb 11, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›