-
Bug
-
Resolution: Unresolved
-
Low
-
None
-
1
-
Severity 3 - Minor
Issue Summary
Vulnerable versions of high charts are being used in the statuspage
Steps to Reproduce
- Launch the vulnerable web application in a browser.
- Copy the validation code from the field below.
- Open the browser console (usually in the developer settings).
- Run the validation code in the console.
Validation Code:
(function(win){if(win.Highcharts&&win.Highcharts.Point)
{return Unknown macro: \{version};} return false;})(window);
Expected Results
No Vulnerable version of the chart is to be used or use the latest version
Actual Results
Vulnerable versions of charts are found.
Workaround
Patch the JS to the latest version or use a different library.