You are viewing a plain text version of this content. The canonical link for it is here.
Posted to yarn-dev@hadoop.apache.org by "D M Murali Krishna Reddy (Jira)" <ji...@apache.org> on 2022/03/16 17:37:00 UTC

[jira] [Created] (YARN-11092) Upgrade jquery ui to 1.13.1

D M Murali Krishna Reddy created YARN-11092:
-----------------------------------------------

             Summary: Upgrade jquery ui to 1.13.1
                 Key: YARN-11092
                 URL: https://issues.apache.org/jira/browse/YARN-11092
             Project: Hadoop YARN
          Issue Type: Improvement
            Reporter: D M Murali Krishna Reddy
            Assignee: D M Murali Krishna Reddy


The current jquery-ui version used(1.12.1) in the trunk has the following vulnerabilities CVE-2021-41182, CVE-2021-41183, CVE-2021-41184, so we need to upgrade to at least 1.13.0.

 

Also currently for the UI2 we are using the shims repo which is not being maintained as per the discussion [https://github.com/components/jqueryui/issues/70] , so if possible we should move to the main jquery repo [https://github.com/jquery/jquery-ui] 



--
This message was sent by Atlassian Jira
(v8.20.1#820001)

---------------------------------------------------------------------
To unsubscribe, e-mail: yarn-dev-unsubscribe@hadoop.apache.org
For additional commands, e-mail: yarn-dev-help@hadoop.apache.org