Upgrade Moment.js, jQuery JavaScript Library, jQuery UI to mitigate security vulnerabilities

XMLWordPrintable

    • Type: Bug
    • Resolution: Fixed
    • Priority: Low
    • 9.2.4
    • Affects Version/s: 9.2.1
    • Component/s: Security
    • None
    • 1
    • Severity 3 - Minor

      Issue Summary

      There is a need to upgrade the below packages used in Bamboo to mitigate security vulnerabilities.

      Moment.js v2.29.2
      jQuery JavaScript Library v2.2.4
      jQuery UI v1.13.0

      The details regarding the vulnerabilities can be found below :

      Below are the fixed version the packages should be upgraded to

      1) Moment.js - version 2.29.4 or higher
      2) jQuery JavaScript Library - 3.0.0-beta1 or higher
      3) jQuery UI - version 1.13.2 or higher

      This is reproducible on Data Center: (yes)

      Steps to Reproduce

      Not applicable

      Expected Results

      Not applicable

      Actual Results

      Not applicable

      Workaround

      Currently there is no known workaround for this behavior. A workaround will be added here when available

            Assignee:
            Wioletta Dys
            Reporter:
            Shashank Kumar
            Votes:
            1 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: