ejschmitt / delayed_job_web

Resque like web interface for delayed job
MIT License
478 stars 188 forks source link

jquery-1.7.1.min.js vulnerabilities #120

Open carlosjpr-collab opened 3 years ago

carlosjpr-collab commented 3 years ago

delayed_job is using jquery-1.7.1.min.js. This version is vulnerable. OWASP ZAP Zed Attack Proxy indique that we these pbs

CVE-2020-11023 CVE-2020-11022 CVE-2015-9251 CVE-2019-11358 CVE-2012-6708

How can i update the version or change it by fixed local version ? thanks