Skip to content
This repository was archived by the owner on Jan 29, 2023. It is now read-only.

Updated jquery to the latest. Cross-site scripting (XSS) vulnerability in… - #12

Open
pangoyal wants to merge 1 commit into
codenothing:mainfrom
pangoyal:master
Open

Updated jquery to the latest. Cross-site scripting (XSS) vulnerability in…#12
pangoyal wants to merge 1 commit into
codenothing:mainfrom
pangoyal:master

Conversation

@pangoyal

Copy link
Copy Markdown

Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag. (https://nvd.nist.gov/vuln/detail/CVE-2011-4969)

Not a big fan of jquery as it has started failing multiple security tests. Should we remove its dependency altogether?

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant