Uploaded image for project: 'Spark'
  1. Spark
  2. SPARK-32723

Upgrade to jQuery 3.5.1

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 3.0.0
    • 3.1.0
    • Spark Core

    Description

      Spark 3.0, Spark 2.4.x uses JQuery version < 3.5 which has known security vulnerability in Spark Master UI and Spark Worker UI.

      Can we please upgrade JQuery to 3.5 and above ?

       https://www.tenable.com/plugins/nessus/136929

      According to the self-reported version in the script, the version of JQuery hosted on the remote web server is greater than or equal to 1.2 and prior to 3.5.0. It is, therefore, affected by multiple cross site scripting vulnerabilities.

       

       

      Attachments

        Activity

          People

            petertoth Peter Toth
            ashish23aks Ashish Kumar Singh
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: