Skip to content

upgrading jQuery due to CVE exposure #1499

Answered by laeubi
gireeshpunathil asked this question in Q&A
Discussion options

You must be logged in to vote

CVE-2020-11022
CVE-2020-11023

Is likely irrelevant for javadoc unless we assume you can add custom code to javadoc pages (in wich case an attacker can literally do anything)

CVE-2019-11358

We do not use "Drupal, Backdrop CMS, and other products" so also not relevant for javadoc.

If one ist still concerned, it might work to simply replace the jquery version in the product, or even delete it (what might degrade some functions like search).

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@gireeshpunathil
Comment options

gireeshpunathil Dec 1, 2024
Collaborator Author

@gireeshpunathil
Comment options

gireeshpunathil Dec 1, 2024
Collaborator Author

@laeubi
Comment options

laeubi Dec 1, 2024
Collaborator

Answer selected by gireeshpunathil
@gireeshpunathil
Comment options

gireeshpunathil Dec 1, 2024
Collaborator Author

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants