Update jQuery version bundled in Bitbucket.

XMLWordPrintable

      The version of jQuery bundled in Bitbucket server is affected by the CVE described below.

      jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.

            Assignee:
            Unassigned
            Reporter:
            Douglas Gnoato
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: