keystonejs / keystone-classic

Node.js CMS and web app framework
http://v4.keystonejs.com
MIT License
14.64k stars 2.21k forks source link

[Security] Update jQuery #4992

Open rucolasalat opened 4 years ago

rucolasalat commented 4 years ago

Expected behavior

Should run up to date version of jQuery

Actual/Current behavior

Admin UI uses an outdated JavaScript library for which vulnerabilities are publicly known. An attacker might use this information in order to search for available exploits. https://www.cvedetails.com/vulnerability-list/vendor_id-6538/Jquery.html https://github.com/keystonejs/keystone-classic/tree/master/admin/public/js/lib/jquery