Candidate: CVE-2015-5654 PublicDate: 2015-10-11 01:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5654 http://jvndb.jvn.jp/jvndb/JVNDB-2015-000153 http://jvn.jp/en/jp/JVN13456571/index.html Description: Cross-site scripting (XSS) vulnerability in Dojo Toolkit before 1.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Ubuntu-Description: Notes: sbeattie> supposedly fixed in 1.2? Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_dojo: upstream_dojo: released (1.2) precise_dojo: not-affected (1.6.1+dfsg-1) trusty_dojo: not-affected (1.6.1+dfsg-1) trusty/esm_dojo: DNE (trusty was not-affected [1.6.1+dfsg-1]) vivid_dojo: not-affected (1.6.1+dfsg-1) devel_dojo: not-affected (1.6.1+dfsg-1)