Mike R created NIFI-9945:
----------------------------
Summary: Upgrade jQuery UI - v1.12.1 To 1.13.1
Key: NIFI-9945
URL: https://issues.apache.org/jira/browse/NIFI-9945
Project: Apache NiFi
Issue Type: Bug
Components: Core UI
Affects Versions: 1.15.3, 1.15.2, 1.15.1, 1.16.0
Environment: Windows, Unix
Reporter: Mike R
NiFi uses a vulnerable version of JQuery UI, which has 3 CVEs against it.
CVE-2021-41182 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41182
CVE-2021-41183 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41183
CVE-2021-41184 - [https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41184]
Lets mitigate this by upgrading the version of JQuery UI used by NiFi to 1.13.1
--
This message was sent by Atlassian Jira
(v8.20.7#820007)