CVE-2016-7103

Cross-site scripting (XSS) vulnerability in jQuery UI before 1.12.0 might allow remote attackers to inject arbitrary web script or HTML via the closeText parameter of the dialog function.


We have discovered 850,509 live websites that are affected by CVE-2016-7103.

Run a Free Instant Scan




Affected Software

Product  jQuery UI
Category JavaScript Libraries
Vulnerable Domains850,509 live websites (19% of jQuery UI install base)
Vulnerable Versions
  • from 0 through 1.12
Vulnerable Versions Count74 versions ( 73% of all versions)



Details

  • Published - Mar 15, 2017
  • Updated - Aug 6, 2024

Website Distribution by Country

Number of websites using CVE-2016-7103
United States237,630 websites



Germany74,784 websites
France49,619 websites
Russia49,352 websites
Italy38,993 websites
Japan34,342 websites
GB32,429 websites
Poland23,312 websites
Netherlands22,032 websites
Czech Republic19,236 websites

Website Distribution by TLD

Number of websites using CVE-2016-7103
.com335,449 websites
.de43,837 websites
.ru40,731 websites
.org31,064 websites
.it27,206 websites
.net24,466 websites
.fr20,765 websites
.co.uk19,960 websites
.nl19,470 websites
.pl18,454 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2016-7103

Top websites that are affected by CVE-2016-7103. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***********.com Ireland***
******.com United States***
*************.com United States***
****.*********.com United States***
*****.************.com United States*,***
****************.com United States*,***
******.***.***.cn China*,***
**********.****.org United States*,***
****.***********.pl Poland*,***
**********.com United States*,***
See full domain list

FAQ

A total of 850,509 websites have been identified as vulnerable to CVE-2016-7103, based on global website indexing conducted by WebTechSurvey.
The jQuery UI is affected by the CVE-2016-7103 vulnerability.
jQuery UI versions up to and including 1.12 are vulnerable to CVE-2016-7103.

References