ARC25-001
CISA KEV jQuery Cross-Site Scripting (XSS) Vulnerability (CVE-2020-11023) - Arctera
Revision History
- 1.0: January 29, 2025: Initial version
Summary
Arctera is aware of the jQuery Cross-Site Scripting (XSS) Vulnerability (CVE-2020-11023) which was added to the CISA Known Exploited Vulnerabilities (KEV) Catalog on January 23, 2025. All Arctera Product Security and Development teams are currently reviewing our software to determine if the vulnerability exists in any of our products and we will update the advisory as we gather more information.
Questions
For questions or problems regarding these vulnerabilities please contact Arctera Technical Support (https://www.arctera.io/support).
Disclaimer
THE SECURITY ADVISORY IS PROVIDED "AS IS" AND ALL EXPRESS OR IMPLIED CONDITIONS, REPRESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT, ARE DISCLAIMED, EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID. VERITAS TECHNOLOGIES LLC SHALL NOT BE LIABLE FOR INCIDENTAL OR CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE FURNISHING, PERFORMANCE, OR USE OF THIS DOCUMENTATION. THE INFORMATION CONTAINED IN THIS DOCUMENTATION IS SUBJECT TO CHANGE WITHOUT NOTICE.
Arctera US LLC
6200 Stoneridge Mall Road, Suite 150
Pleasanton, CA 94588