CVE-2021-43956
The jQuery deserialize library in Fisheye and Crucible before version 4.8.9 allowed remote attackers to to inject arbitr
The jQuery deserialize library in Fisheye and Crucible before version 4.8.9 allowed remote attackers to inject arbitrary HTML and/or JavaScript via a prototype pollution vulnerability.
MEDIUM · CVSS 6.1
EPSS 0.00368
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0