XenForo
Administrative
- Thread starter
- Admin
- #1
XenForo submitted a new resource:
upgrade to jquery - patch known jquery vulnerabilities in 3.4.1
Read more about this resource...
upgrade to jquery - patch known jquery vulnerabilities in 3.4.1
This is a quick hack to upgrade jquery to 3.5.1. 3.4.1 on the current 2.1 branch has 2 known xss potentials in it. Snyk - jquery@3.4.1 vulnerabilities | jquery 3.4.1
Not sure if they can even be run from XF, but it was something that showed up on my lighthouse report, so i addressed it.
In my quick testing, i haven't noticed anything breaking, but use at your own risk.
Your cp may show un-expected file contents as a result of this...
Read more about this resource...