MantisBT: master 53e2e43e

Author Committer Branch Timestamp Parent
vboctor vboctor master 2026-02-03 14:58 master 12a20c13
Changeset

Upgrade jQuery from 2.2.4 to 3.7.1

This upgrade addresses the following security vulnerabilities:

  • CVE-2015-9251: XSS via Cross-Domain AJAX (fixed in 3.0.0)
  • CVE-2019-11358: Prototype Pollution (fixed in 3.4.0)
  • CVE-2020-11022: XSS via htmlPrefilter (fixed in 3.5.0)
  • CVE-2020-11023: XSS via htmlPrefilter (fixed in 3.5.0)

Fixes #36863

mod - core/constant_inc.php Diff File
mod - js/common.js Diff File
rm - js/jquery-2.2.4.min.js Diff
add - js/jquery-3.7.1.min.js Diff File
mod - library/README.md Diff File