USGS ITSOT scanned our applications today and found a few vulnerabilities. For the most part I have remediated them, except for the following which are better handled by the development team:
vulnerable Javascript library
broken links
The vulnerable Javascript library one is specific to jQuery 2.2.4 and was found in the following location:
/sigldms/bower_components/jquery.js
The broken links one is just an "informational" item and not a true vulnerability, but since the list of broken links is quite long I thought you might want to clean it up.
From Aaron: