cconkrig opened a new issue, #25645: URL: https://github.com/apache/airflow/issues/25645
### Apache Airflow version 2.3.3 ### What happened Tenable Nessus is flagging Flower running jQuery 1.7.2 (should be at least 3.5.0) with a score ranking of 6.1 ['CVE-2020-11022', 'CVE-2020-11023'] Flower is locked in https://raw.githubusercontent.com/apache/airflow/constraints-2.3.3/constraints-3.7.txt ### What you think should happen instead Flower should be kept up to date or deprecated/removed. ### How to reproduce Install airflow. ### Operating System Ubuntu 20.04 ### Versions of Apache Airflow Providers _No response_ ### Deployment Docker-Compose ### Deployment details _No response_ ### Anything else _No response_ ### Are you willing to submit PR? - [ ] Yes I am willing to submit a PR! ### Code of Conduct - [X] I agree to follow this project's [Code of Conduct](https://github.com/apache/airflow/blob/main/CODE_OF_CONDUCT.md) -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
