CVE-2021-41182 | jQuery-UI up to 1.12.x Datepicker Widget altField cross site scripting (GHSA-9gj3-hwp5-pmwc / Nessus ID 211078)
A vulnerability classified as problematic has been found in jQuery-UI up to 1.12.x. Affected is an unknown function of the component Datepicker Widget. The manipulation of the argument altField leads to cross site scripting.
This vulnerability is traded as CVE-2021-41182. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.