juxtalearn / clipit

ClipIt Repository
GNU Affero General Public License v3.0
5 stars 4 forks source link

Update jquery.imgareaselect #24

Open fisharebest opened 9 years ago

fisharebest commented 9 years ago

Clipit uses version 0.9.8 of jquery.imgareaselect - which contains jQuery 1.6.1

We are advised that jQuery <=1.6.3 contains an XSS vulnerability, and we are required to upgrade all our servers/applications.

There is a newer version of this package (0.9.10) - which contains jQuery 1.9.1

Can this package be upgraded? Thanks!

https://github.com/odyniec/imgareaselect

pebs74 commented 9 years ago

Hi Greg,

We'll analyse the request and give you a reply ASAP.

Thanks!