Skip to content

Conversation

wenz
Copy link

@wenz wenz commented Mar 23, 2021

Require the minimum jQuery version without any known security vulnerabilities, which is 3.5.1 at this time (3.5.0 contains a regression).

Fixes #1268

Require the minimum jQuery version without any known security vulnerabilities, which is 3.5.1 at this time (3.5.0 contains a regression).

Fixes hammerjs#1268
@ghost
Copy link

ghost commented Oct 10, 2021

Please, merge. It's just test's dependency, and it's polluting project analysis:

One or more dependencies were identified with known vulnerabilities in MyProject:

hammerjs-2.0.8.jar: jquery.min.js (pkg:javascript/jquery@2.1.1) : CVE-2015-9251, CVE-2019-11358, CVE-2020-11022, CVE-2020-11023

See the dependency-check report for more details.

@danisnguyen
Copy link

Bumping this as its failing vulnerability scans. Please merge

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Security vulnerabilities in /tests/unit/assets/jquery.min.js

2 participants