Mike R created NIFI-9945:
----------------------------

             Summary: Upgrade  jQuery UI - v1.12.1 To 1.13.1 
                 Key: NIFI-9945
                 URL: https://issues.apache.org/jira/browse/NIFI-9945
             Project: Apache NiFi
          Issue Type: Bug
          Components: Core UI
    Affects Versions: 1.15.3, 1.15.2, 1.15.1, 1.16.0
         Environment: Windows, Unix
            Reporter: Mike R


NiFi uses a vulnerable version of JQuery UI, which has 3 CVEs against it. 

CVE-2021-41182 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41182
CVE-2021-41183 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41183
CVE-2021-41184 - [https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41184]

 

Lets mitigate this by upgrading the version of JQuery UI used by NiFi to 1.13.1 



--
This message was sent by Atlassian Jira
(v8.20.7#820007)

Reply via email to