
Prototype Pollution on jQuery Leads to XSS. Payload in Image XSS Exploit on CVE-2021-20086 https://security.snyk.io/vuln/SNYK-JS-JQUERYBBQ-1255644 #xss #nuclei #bugbounty #appsec #secops #applicationsecurity https://t.co/04UNgI2NnK
Post summary
The tweet announces a prototype‑pollution vulnerability in jQuery (CVE‑2021‑20086) that is exploitable via XSS, with a payload image linked as proof of concept. No active exploitation or patch details are provided.
