Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(pkg/promtail): CVE-2020-11022: upgraded to jquery to 3.5.1 from 3.3.1 #3222

Closed

Conversation

veltmanj
Copy link
Contributor

Backup jquery(3.3.1) to jquery.min.js, added jquery-3.5.1.js, updated reference in base template

What this PR does / why we need it:
Lifecycle management and security.

Which issue(s) this PR fixes:
Fixes #
Fixes# #3185

Special notes for your reviewer:
This issue seems as far as I know isolated to Promtail. Grafana seems to use the correct jQuery version.
Unfortunately I could not find any particular tests for these files. But imho the impact seems low.

Checklist

  • Documentation added
  • Tests updated

Backup jquery(3.3.1) to jquery.min.js, added jquery-3.5.1.js, updated reference in base template
@CLAassistant
Copy link

CLAassistant commented Jan 25, 2021

CLA assistant check
All committers have signed the CLA.

 executed make check-generated-files
@veltmanj veltmanj changed the title fix(pkg/promtail): fix CVE-2020-11022: upgraded to jquery to 3.5.1 from 3.3.1 fix(pkg/promtail): CVE-2020-11022: upgraded to jquery to 3.5.1 from 3.3.1 Jan 25, 2021
@veltmanj veltmanj closed this Jan 25, 2021
@veltmanj veltmanj deleted the fix(pkg/promtail)--CVE-2020-11022 branch January 25, 2021 11:34
@veltmanj veltmanj restored the fix(pkg/promtail)--CVE-2020-11022 branch January 25, 2021 11:36
@veltmanj veltmanj deleted the fix(pkg/promtail)--CVE-2020-11022 branch January 26, 2021 10:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants