Update jquery to 3.5.1 #3908

Closed
opened 2025-12-29 18:31:55 +01:00 by adam · 0 comments
Owner

Originally created by @michael-ironnet on GitHub (Jul 27, 2020).

Originally assigned to: @jeremystretch on GitHub.

Environment

  • Python version: 3.6.8
  • NetBox version: 2.8.7

Proposed Change

Upgrade jquery to the latest release 3.5.1 (as of the time this issue was submitted)

Justification

Currently Netbox includes jquery 3.4.1 in the netbox/project-static/js directory. The following link details vulnerabilities that can be exploited in jquery 3.4.1: https://snyk.io/test/npm/jquery/3.4.1

CVE-2020-11022
CVE-2020-11023

Originally created by @michael-ironnet on GitHub (Jul 27, 2020). Originally assigned to: @jeremystretch on GitHub. <!-- NOTE: IF YOUR ISSUE DOES NOT FOLLOW THIS TEMPLATE, IT WILL BE CLOSED. This form is only for proposing specific new features or enhancements. If you have a general idea or question, please post to our mailing list instead of opening an issue: https://groups.google.com/forum/#!forum/netbox-discuss NOTE: Due to an excessive backlog of feature requests, we are not currently accepting any proposals which significantly extend NetBox's feature scope. Please describe the environment in which you are running NetBox. Be sure that you are running an unmodified instance of the latest stable release before submitting a bug report. --> ### Environment * Python version: 3.6.8 * NetBox version: 2.8.7 <!-- Describe in detail the new functionality you are proposing. Include any specific changes to work flows, data models, or the user interface. --> ### Proposed Change Upgrade jquery to the latest release 3.5.1 (as of the time this issue was submitted) ### Justification Currently Netbox includes jquery 3.4.1 in the netbox/project-static/js directory. The following link details vulnerabilities that can be exploited in jquery 3.4.1: https://snyk.io/test/npm/jquery/3.4.1 CVE-2020-11022 CVE-2020-11023
adam added the status: acceptedtype: housekeeping labels 2025-12-29 18:31:55 +01:00
adam closed this issue 2025-12-29 18:31:55 +01:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/netbox#3908