Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

jquery 1.11 has a major security vulnerability; recommended to upgrade to 3.5+ #2116

Closed
michaelquinn32 opened this issue Apr 19, 2021 · 3 comments

Comments

@michaelquinn32
Copy link

Hi team!

All versions of jquery less than 3.5 have a vulnerability where inputs can execute untrusted code.

https://vulnstore.corp.google.com/#advisories&expand=true&q=publisher:Google+reference:VigilanceChecker-PACKAGE-JQUERY-AFFECTED-BY-CVE-2020-11022

It's recommended that you upgrade to the most recent version.

Thanks!

@cderv
Copy link
Collaborator

cderv commented Apr 19, 2021

Thanks a lot.

For rmarkdown this is tracked in #1814

We are late to the party and we need to do for next version

@michaelquinn32
Copy link
Author

Thanks!

Duplicate of #1814.

@github-actions
Copy link

This old thread has been automatically locked. If you think you have found something related to this, please open a new issue by following the issue guide (https://yihui.org/issue/), and link to this old issue if necessary.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators Oct 19, 2021
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants