mr-mig / webbooost

Chrome extension for faster web browsing.
http://webboost.fse.guru
MIT License
89 stars 22 forks source link

Security issues using outdated libraries #60

Open rugabunda opened 6 years ago

rugabunda commented 6 years ago

You have not updated this extension in 2 years, have not the following libraries been updated in that time?

webboost Libraries covered:

jQuery jQuery-migrate angular core (1.0.1 - 1.2.14) webfontloader yandex metrika (watch.js) google plus one (plusone.js) twitter widgets (widgets.js, client.js) swfobject Bootstrap JS (2.3.2, 3.1.1) Bootstrap CSS (2.3.2, 3.1.1) Font Awesome (3.2.1, 4.0.0) facebook (en_US/all.js)

rugabunda commented 6 years ago

I see bootstrap js & css has since been updated to v4.1.1, and v3.3.7, font Awesome to Version 5.0.13... etc. are you planning on updating these, and do these old libraries pose a security risk?