Actions
Bug #23071
openThe jQuery version we are using is unsafe
Status:
New
Priority:
Normal
Assignee:
-
Category:
JavaScript stack
Target version:
-
Description
https://nvd.nist.gov/vuln/detail/CVE-2015-9251
https://nvd.nist.gov/vuln/detail/CVE-2016-10707
"jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed."
Updated by Tomer Brisker almost 7 years ago
- Related to Refactor #21860: Update jquery to version 3 added
Actions