PT-2026-40799 · Unknown+1 · Jquery 1.X+1

Published

2026-05-13

·

Updated

2026-05-13

·

CVE-2026-21821

CVSS v3.1

8.3

High

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HCL BigFix SCM Reporting site (affected versions not specified)
Description The HCL BigFix SCM Reporting site uses an outdated and unsupported version of the jQuery 1.x library. Because jQuery 1.x has reached end-of-life and no longer receives security updates, the application is exposed to known security weaknesses. This increases the risk of client-side attacks, such as Cross-Site Scripting (XSS), which allows attackers to inject malicious scripts into web pages, or manipulation via vulnerable third-party components.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2026-21821

Affected Products

Bigfix Scm Reporting Site
Jquery 1.X