nifi icon indicating copy to clipboard operation
nifi copied to clipboard

NIFI-10368 Upgrade jQuery UI from 1.12.1 to 1.13.2

Open exceptionfactory opened this issue 2 years ago • 0 comments

Summary

NIFI-10368 Upgrades jQuery UI from 1.12.1 to 1.13.2 to resolve CVE-2022-31160, related to the checkboxradio() function, which Apache NiFi does not use directly. The 1.12.1 version of jQuery UI is no longer supported, and version 1.13.2 provides a compatible upgrade with a number of fixes added in 1.13.0.

Tracking

Please complete the following tracking steps prior to pull request creation.

Issue Tracking

Pull Request Tracking

  • [X] Pull Request title starts with Apache NiFi Jira issue number, such as NIFI-00000
  • [X] Pull Request commit message starts with Apache NiFi Jira issue number, as such NIFI-00000

Pull Request Formatting

  • [X] Pull Request based on current revision of the main branch
  • [X] Pull Request refers to a feature branch with one commit containing changes

Verification

Please indicate the verification steps performed prior to pull request creation.

Build

  • [X] Build completed using mvn clean install -P contrib-check
    • [X] JDK 8
    • [ ] JDK 11
    • [ ] JDK 17

Licensing

  • [ ] New dependencies are compatible with the Apache License 2.0 according to the License Policy
  • [ ] New dependencies are documented in applicable LICENSE and NOTICE files

Documentation

  • [ ] Documentation formatting appears as expected in rendered files

exceptionfactory avatar Aug 17 '22 21:08 exceptionfactory