VDB

GCVE-110-MAGEIA-2020-126

GCVE-110-MAGEIA-2020-126
Advisory Published
Vulnetix · Advisory published March 6, 2020
Updated dojo package fixes security vulnerability: dojox was vulnerable to Cross-site Scripting. This was due to dojox.xmpp.util.xmlEncode only encoding the first occurrence of each character, not all of them (CVE-2019-10785).

Affected Products

VendorProductVersionsPlatforms
Mageiadojo0 (affected), 1.14.5-1.mga7 (unaffected), 0 (affected), 1.14.5-1.mga7 (unaffected)
Mageianetatalk3.1.12-2.1.mga7 (unaffected), 0 (affected)

Browse GCVE Records

74,132 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›