You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@drill.apache.org by "ASF GitHub Bot (Jira)" <ji...@apache.org> on 2021/11/30 14:24:00 UTC

[jira] [Commented] (DRILL-8051) Update the JQuery for Vulnerability issue

    [ https://issues.apache.org/jira/browse/DRILL-8051?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17451158#comment-17451158 ] 

ASF GitHub Bot commented on DRILL-8051:
---------------------------------------

kingswanwho opened a new pull request #2391:
URL: https://github.com/apache/drill/pull/2391


   # [DRILL-8051](https://issues.apache.org/jira/browse/DRILL-8051): Update the JQuery for Vulnerability issue
   
   ## Description
   
   Update the JQuery version from 3.4.1 to 3.6.0 for vulnerability issue which reported by @fromrymail https://github.com/apache/drill/issues/2380
   
   ## Documentation
   This is a package version update for security, no doc update needs
   
   ## Testing
   Manually tested Drill Web UI basic functions:
   Query, Profiles, Storage, Metrics, Threads, Logs
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscribe@drill.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


> Update the JQuery for Vulnerability issue
> -----------------------------------------
>
>                 Key: DRILL-8051
>                 URL: https://issues.apache.org/jira/browse/DRILL-8051
>             Project: Apache Drill
>          Issue Type: Improvement
>          Components: 1.19
>    Affects Versions: 1.19.0
>            Reporter: Jingchuan Hu
>            Assignee: James Turton
>            Priority: Major
>             Fix For: Future, 1.19.0
>
>   Original Estimate: 168h
>  Remaining Estimate: 168h
>
> Apache drill used JQuery 3.4.1 which has the vulnerability report form CVE.
> [https://snyk.io/vuln/npm:jquery]
> Needs to update JQuery version from 3.4.1 to 3.6.0



--
This message was sent by Atlassian Jira
(v8.20.1#820001)