Project

General

Profile

Actions

Bug #17516

closed

Update jquery to 2.2.4 to fix XSS

Added by Daniel Lobato Garcia over 7 years ago. Updated almost 6 years ago.

Status:
Closed
Priority:
Normal
Category:
Security
Target version:
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

Affected versions of the package (< 1.12) are vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain ajax request is performed without the dataType option causing text/javascript responses to be executed.

https://github.com/jquery/jquery/issues/2432 for more information


Related issues 1 (0 open1 closed)

Related to Foreman - Bug #17910: unable to click on puppet ca links ClosedSebastian Gräßl01/03/2017Actions
Actions

Also available in: Atom PDF