jquery-1.7.2.min.js XSS漏洞

测试页面:

<!DOCTYPE html>
<html>
<head>
<script src="http://www.esdkkd.com/js/jquery-1.7.2.min.js"></script>
  <meta charset="utf-8">
  <title>JS Bin</title>
</head>
<body>
JQuery链接: http://www.esdkkd.com/js/jquery-1.7.2.min.js
<script>
  var img = $("<img onerror='alert(22);'>");
	img.attr('src','xx');
</script>
</body>
</html>

猜你喜欢

转载自blog.csdn.net/ZPFCD/article/details/122576262