Back

CVE-2002-1053

Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote attackers to execute arbitrary script via a URL that contains a reference to a nonexistent host followed by the script, which is included in the resulting error message.

Published: Oct 4, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
w3c jigsaw 2.2

GitHub Security Advisory GHSA-6g3c-9q4h-j586

Cross-site scripting (XSS) vulnerability in W3C Jigsaw Proxy Server before 2.2.1 allows remote...

Risk Scores

CVSS Score 6.8 / 10
EPSS Score 2.09%

Top 20% most likely to be exploited

Threat Score 27.8 / 100

Data Sources

NVD EPSS GitHub