CVE-2012-6662

Cross-site scripting (XSS) vulnerability in the default content option in jquery.ui.tooltip.js in the Tooltip widget in jQuery UI before 1.10.0 allows remote attackers to inject arbitrary web script or HTML via the title attribute, which is not properly handled in the autocomplete combo box demo.


We have discovered 356,530 live websites that are affected by CVE-2012-6662.

Test my site




Affected Software

Product  jQuery UI
Category JavaScript Libraries
Vulnerable Domains356,530 live websites (7.24% of jQuery UI install base)
Vulnerable Versions
  • from 0 before 1.10
Vulnerable Versions Count65 versions ( 56.03% of all versions)



Details

  • Published - Nov 25, 2014
  • Updated - Aug 6, 2024

CVE-2012-6662 usage by Country

United States114,460 websites



Germany33,325 websites
France22,402 websites
Russia21,865 websites
Netherlands11,705 websites
Japan11,432 websites
Czech Republic11,328 websites
Poland10,978 websites
GB10,785 websites
Italy7,151 websites

CVE-2012-6662 usage by TLD

.com139,370 websites
.ru19,272 websites
.de18,949 websites
.org14,001 websites
.net11,360 websites
.pl9,918 websites
.cz9,910 websites
.nl9,477 websites
.fr8,549 websites
.co.uk7,871 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2012-6662

Top websites that are affected by CVE-2012-6662. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.com United States*,***
*********************.de Germany*,***
******.***.***.cn China*,***
****.***********.pl Poland*,***
*******.org United States*,***
************.com United States*,***
**********.com United States*,***
***.int Switzerland*,***
*********.de Germany*,***
********.com United States*,***
See full domain list

FAQ

A total of 356,530 websites have been identified as vulnerable to CVE-2012-6662, discovered through global website indexing conducted by WebTechSurvey.
jQuery UI is susceptible to CVE-2012-6662 vulnerability.
jQuery UI versions before 1.10 are vulnerable to CVE-2012-6662.
Version 1.10 of jQuery UI addresses the CVE-2012-6662 security vulnerability.