
Research
/Security News
Critical Vulnerability in NestJS Devtools: Localhost RCE via Sandbox Escape
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
A jQuery plugin that makes it easy to transform any html-element into a range slider with definable range that is consistent across browsers.
A jQuery plugin that makes it easy to transform any html-element into a range slider with definable range that is consistent across browsers.
Includes:
<link rel="stylesheet" href="Content/jquery-rangeslider.min.css" />
<link rel="stylesheet" href="Content/jquery-rangeslider.style.min.css" />
<script type="text/javascript" src="Scripts/jquery-3.3.1.min.js"></script>
<script type="text/javascript" src="Scripts/jquery-rangeslider.min.js"></script>
Html:
<div id="example-slider" data-range-start="0" data-step-size="5" data-step-count="40" data-value="25" data-field-name="example-value">
</div>
Javascript:
$('#example-slider').rangeslider();
This will generate a rangeslider with a range of 0 to 200 with steps of 5 and a starting value of 25. The input field will have the value mentioned in the data-value attribute and the name "example-value".
The rangeslider only provides very basic styling in the provided style sheet jquery-rangeslider.style.css
; you can use this as a template to create your own style.
The various css classes the slider uses are:
.rangeslider
is the original element and the main container of the slider.rangeslider-input
is the hidden input field that contains the current value.rangeslider-thumb
is the element that can be dragged along the track.rangeslider-track
is the track along which the thumb is draggedFull documentation can be found at the wiki
FAQs
A jQuery plugin that makes it easy to transform any html-element into a range slider with definable range that is consistent across browsers.
We found that jquery-rangeslider demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
A flawed sandbox in @nestjs/devtools-integration lets attackers run code on your machine via CSRF, leading to full Remote Code Execution (RCE).
Product
Customize license detection with Socket’s new license overlays: gain control, reduce noise, and handle edge cases with precision.
Product
Socket now supports Rust and Cargo, offering package search for all users and experimental SBOM generation for enterprise projects.