underscore.string icon indicating copy to clipboard operation
underscore.string copied to clipboard

jquery 1.7.2 has known vulnerabilities, please update

Open mjp0 opened this issue 7 years ago • 0 comments

retire.js output:

underscore.string/test/test_underscore/vendor/jquery.js
 ↳ jquery 1.7.2 has known vulnerabilities: 

severity: medium; CVE: CVE-2012-6708, bug: 11290, 
summary: Selector interpreted as HTML; http://bugs.jquery.com/ticket/11290 http://research.insecurelabs.org/jquery/test/ 

severity: medium; issue: 2432, 
summary: 3rd party CORS request may execute, CVE: CVE-2015-9251; https://github.com/jquery/jquery/issues/2432 http://blog.jquery.com/2016/01/08/jquery-2-2-and-1-12-released/ http://research.insecurelabs.org/jquery/test/

mjp0 avatar Apr 12 '18 06:04 mjp0