Epidiah / asp

An interactive archive for the Golden Cobra Challenge.
0 stars 0 forks source link

jQuery 1.11.3 Used #2

Open joevgreathead opened 2 years ago

joevgreathead commented 2 years ago

Issue

jQuery 1.x has identified vulnerabilities. This isn't likely to impact you because this is a static site, however, I wanted to identify it as a risk.

jQuery has most likely been included as a dependency to support Bootstrap JS included (Bootstrap relies on jQuery).

One solution here is to remove the Bootstrap JS necessity since Reagent is being used. Bootstrap CSS plus Reagent should provide just about any functionality you'll likely need on the site.

Reference

https://snyk.io/test/npm/jquery/1.11.3