Impact
As an XSS vulnerability, the impact is high, but see workarounds below.
Patches
Upgrade to version 1.0.4.
Workarounds
This vulnerability results from improper construction of HTML in javascript based on existing elements, e.g. DOM-Based XSS. If the content being manipulated by stacktable.js is trusted, this vulnerability is not likely to be exploited.
Credits
Reported by: Ted Gifford (WebFirst, Inc.)
Fixed by: Ted Gifford (WebFirst, Inc.)
Impact
As an XSS vulnerability, the impact is high, but see workarounds below.
Patches
Upgrade to version 1.0.4.
Workarounds
This vulnerability results from improper construction of HTML in javascript based on existing elements, e.g. DOM-Based XSS. If the content being manipulated by stacktable.js is trusted, this vulnerability is not likely to be exploited.
Credits
Reported by: Ted Gifford (WebFirst, Inc.)
Fixed by: Ted Gifford (WebFirst, Inc.)