Skip to content

jquery 1.7.2 has known vulnerabilities, please update #514

@mjp0

Description

@mjp0

retire.js output:

underscore.string/test/test_underscore/vendor/jquery.js
 ↳ jquery 1.7.2 has known vulnerabilities: 

severity: medium; CVE: CVE-2012-6708, bug: 11290, 
summary: Selector interpreted as HTML; http://bugs.jquery.com/ticket/11290 http://research.insecurelabs.org/jquery/test/ 

severity: medium; issue: 2432, 
summary: 3rd party CORS request may execute, CVE: CVE-2015-9251; https://github.com/jquery/jquery/issues/2432 http://blog.jquery.com/2016/01/08/jquery-2-2-and-1-12-released/ http://research.insecurelabs.org/jquery/test/

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions