You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The text was updated successfully, but these errors were encountered:
Jason-Morcos
changed the title
#Security - CVE-2021-41184: Upgrade embedded jQuery UI Position to 1.13+
#Security - CVE-2021-41184: Upgrade embedded jQuery UI Position to 1.13+ (v2.x)
Jul 12, 2022
Jason-Morcos
changed the title
#Security - CVE-2021-41184: Upgrade embedded jQuery UI Position to 1.13+ (v2.x)
Security - CVE-2021-41184: Upgrade embedded jQuery UI Position to 1.13+ (v2.x)
Jul 12, 2022
This plugin embeds jQuery UI Position v1.12 (https://github.com/swisnl/jQuery-contextMenu/blob/master/dist/jquery.ui.position.js).
This version of jQuery UI is susceptible to Cross Site Scripting and is officially unsupported by jQuery UI.
Upgrading this embedded code to jQuery UI 1.13 closes these known security vulnerabilities.
CVE: https://www.cve.org/CVERecord?id=CVE-2021-41184 / https://security.snyk.io/vuln/SNYK-JS-JQUERYUI-1767175
jQuery UI: https://jqueryui.com
The text was updated successfully, but these errors were encountered: