[
https://issues.apache.org/jira/browse/FELIX-6561?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Carsten Ziegeler updated FELIX-6561:
------------------------------------
Fix Version/s: webconsole-4.8.4
> Vulnerabilities in jquery-ui-1.12.1.js
> --------------------------------------
>
> Key: FELIX-6561
> URL: https://issues.apache.org/jira/browse/FELIX-6561
> Project: Felix
> Issue Type: Bug
> Components: Web Console
> Affects Versions: webconsole-4.6.4, webconsole-4.7.2, webconsole-4.8.2
> Reporter: Robert Alan Chapton
> Priority: Critical
> Labels: CVE, SECURITY, jquery-ui, vulnerabilities
> Fix For: webconsole-4.8.4
>
>
> jQuery-UI 1.12.1 used by felix webconsole has 3 security vulnerabilities
> [https://www.cvedetails.com/cve/CVE-2021-41182/]
> [https://www.cvedetails.com/cve/CVE-2021-41183/]
> [https://www.cvedetails.com/cve/CVE-2021-41184/]
> the file in question is located within felix webconsole
> {code:java}
> res/lib/jquery-ui-1.12.1.js {code}
--
This message was sent by Atlassian Jira
(v8.20.10#820010)