You cannot update this specific version. There are still some plugins (and 
maybe some old core scripts as well) that use jQuery 1, so we cannot remove 
that dependency. If a new plugin wants to use jQuery then there is an 
additional plugin available: https://github.com/jenkinsci/jquery3-api-plugin 
<https://github.com/jenkinsci/jquery3-api-plugin>

> Am 26.08.2020 um 16:38 schrieb [email protected] <[email protected]>:
> 
> Hi All,
> 
> Just got gigged by our security team for a vulnerability in Jenkins with the 
> version of JQuery installed.  How do I go about updating the version of 
> JQuery Jenkins runs?  Here's the specifics of the vulnerability:
> 
> Plugin Output: 
>   URL               : http://myMachine:8081/js/jquery-1.11.1.min.js
>   Installed version : 1.11.1
>   Fixed version     : 3.5.0
> 
> I'm running version 2.235.5 of Jenkins.
> 
> Thanks,
> Eric
> 
> -- 
> You received this message because you are subscribed to the Google Groups 
> "Jenkins Users" group.
> To unsubscribe from this group and stop receiving emails from it, send an 
> email to [email protected] 
> <mailto:[email protected]>.
> To view this discussion on the web visit 
> https://groups.google.com/d/msgid/jenkinsci-users/13c921b1-02f4-4f00-a474-266fe766ced0n%40googlegroups.com
>  
> <https://groups.google.com/d/msgid/jenkinsci-users/13c921b1-02f4-4f00-a474-266fe766ced0n%40googlegroups.com?utm_medium=email&utm_source=footer>.

-- 
You received this message because you are subscribed to the Google Groups 
"Jenkins Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/jenkinsci-users/C41FF017-77FB-4726-93B4-264011284A0E%40gmail.com.

Reply via email to