{"package":"jQuery.UI.Combined","ecosystem":"nuget","latest_version":"1.14.1","description":"jQuery UI is an open source library of interface components — interactions, full-featured widgets, and animation effects — based on the stellar jQuery javascript library . Each component is built according to jQuery's event-driven architecture (find something, manipulate it) and is themeable, making it easy for developers of any skill level to integrate and extend into their own code.\n    NOTE: This package is maintained on behalf of the library owners by the NuGet Community Packages project at ","license":"","license_risk":"unknown","commercial_use_notes":"No license declared in registry metadata — verify manually before commercial use.","homepage":"http://jqueryui.com/","repository":"http://jqueryui.com/","downloads_weekly":294252,"health":{"score":54,"risk":"high","breakdown":{"maintenance":5,"popularity":14,"security":21,"maturity":12,"community":2},"deprecated":false,"max_score":100},"vulnerabilities":{"count":2,"critical":0,"high":0,"medium":2,"low":0,"details":[{"vuln_id":"BIT-drupal-2021-41184","severity":"medium","summary":"XSS in the `of` option of the `.position()` util in jquery-ui","affected_versions":"<1.13.0|<1.13.0|<1.13.0|<7.0.0|=1.10.4|=1.10.5|=1.12.0|=1.12.0-rc.2|=1.12.1|=1.13.0-rc.2|=1.13.0-rc.3|=1.10.0|=1.10.1|=1.10.2|=1.10.3|=1.10.4|=1.11.0|=1.11.1|=1.11.2|=1.11.3|=1.11.4|=1.12.0|=1.12.1|=1.8.10|=1.8.11|=1.8.12|=1.8.13|=1.8.14|=1.8.15|=1.8.16|=1.8.17|=1.8.18|=1.8.19|=1.8.20|=1.8.20.1|=1.8.21|=1.8.22|=1.8.23|=1.8.24|=1.8.9|=1.9.0|=1.9.0-RC1|=1.9.1|=1.9.2|=0.0.1|=0.0.2|=0.1.0|=0.2.0|=0.2.1|=0.2.2|=0.3.0|=0.4.0|=0.4.1|=0.5.0|=1.0.0|=1.1.0|=1.1.1|=2.0.0|=2.0.1|=2.0.2|=3.0.0|=3.0.1|=4.0.0|=4.0.1|=4.0.2|=4.0.3|=4.0.4|=4.0.5|=4.1.0|=4.1.1|=4.1.2|=4.2.0|=4.2.1|=5.0.0|=5.0.1|=5.0.2|=5.0.3|=5.0.4|=5.0.5|=6.0.0|=6.0.1","fixed_version":"7.0.0","source":"osv","published_at":"2021-10-26T14:55:12Z","in_kev":false,"threat_tier":"unknown"},{"vuln_id":"CVE-2010-5312","severity":"medium","summary":"Cross-site Scripting in jquery-ui","affected_versions":">=1.7.0,<1.10.0|>=1.7.0,<1.10.0|>=1.7.0,<1.10.0|<4.0.0|=1.8.10|=1.8.11|=1.8.12|=1.8.13|=1.8.14|=1.8.15|=1.8.16|=1.8.17|=1.8.18|=1.8.19|=1.8.20|=1.8.20.1|=1.8.21|=1.8.22|=1.8.23|=1.8.24|=1.8.9|=1.9.0|=1.9.0-RC1|=1.9.1|=1.9.2|=0.0.1|=0.0.2|=0.1.0|=0.2.0|=0.2.1|=0.2.2|=0.3.0|=0.4.0|=0.4.1|=0.5.0|=1.0.0|=1.1.0|=1.1.1|=2.0.0|=2.0.1|=2.0.2|=3.0.0|=3.0.1","fixed_version":"4.0.0","source":"osv","published_at":"2017-10-24T18:33:38Z","in_kev":false,"epss_prob":0.05931,"epss_percentile":0.90655,"threat_tier":"theoretical"}],"actively_exploited_count":0,"likely_exploited_count":0},"versions":{"latest":"1.14.1","total_count":38,"recent":["1.9.0","1.9.1","1.9.2","1.10.0","1.10.1","1.10.2","1.10.3","1.10.4","1.11.0","1.11.1","1.11.2","1.11.3","1.11.4","1.12.0","1.12.1","1.13.0","1.13.1","1.13.2","1.13.3","1.14.1"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":1,"first_published":null,"last_published":"2024-11-15T17:11:10.38+00:00","dependencies_count":1,"dependencies":["jQuery"]},"github_stats":null,"bundle":null,"typescript":null,"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"safe_to_use","issues":[],"use_version":"1.14.1","version_hint":"Update to >= 4.0.0 to fix known vulnerabilities","summary":"jQuery.UI.Combined@1.14.1 is safe to use (health: 54/100)"},"version_scoped":null,"requested_version":null,"_cache":"miss","_response_ms":749,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":20,"first_release_age_days":null,"last_release_days_ago":531,"avg_days_between_releases":null,"release_velocity":"stale"}}