uchiwa icon indicating copy to clipboard operation
uchiwa copied to clipboard

Bootstrap 3.1.1 is out of date

Open cwjohnston opened this issue 6 years ago • 1 comments

Expected Behavior

Dependencies should remain up-to-date to address known security vulnerabilities.

Current Behavior

uchiwa-web ships Bootstrap 3.1.1 which is subject to XSS vulnerabilities:

Possible Solution

Upgrade bootstrap to 3.4.0

Your Environment

  • Uchiwa version used: 1.3.1
  • Sensu version used:
  • Operating System and version (e.g. Ubuntu 14.04):

cwjohnston avatar Jan 02 '19 23:01 cwjohnston

Per Simon, this should be relatively straightforward.

annaplotkin avatar Mar 18 '19 19:03 annaplotkin