You are viewing limited content. For full access, please sign in.

Question

Question

Jquery Version

asked on July 25, 2018

Hi,


Is it possible to update the version of JQuery used by forms?

At a glance I think the libraries are stored in "Laserfiche Forms\Forms\lib\jquery"

I would like to update to 3.3 but don't want to break anything, is there a supported suggestion on how to update? I'm on Forms 10.3

 

Thanks,

Alistair

0 0

Answer

SELECTED ANSWER
replied on July 26, 2018

We haven't tested JQuery 3.3 so it's not supported. If you replace the current version of JQuery, its dependencies (color picker, splitter in CSS/JS page, localization...) would probably break. 

You could try to add JQuery 3.3 and call it in your custom code, but Forms would still need to load its current versions. 

What are you trying to do in JQuery 3.3 that isn't supported? 

0 0

Replies

replied on August 12, 2018

Thanks for clarifying that Jared. There actually isn't anything I'm looking to do functionally. The reason for asking was just because during a pen test it was flagged as being a vulnerability. 

 

It's unfortunate but not worth breaking something over. Will leave it as is and hope for update in the next release.

 

Thanks so much for answering the question for me.

0 0
replied on February 18, 2022

The JQuery library has been updated to a version without vulnerability since 10.4.3. And we are actively updating any library that have known vulnerabilities with each release. 

0 0
replied on October 23, 2023

I am running Weblink 11 and a scan done by a third party security company is returning this: "b"Vulnerable javascript library: jQuery\nversion: 3.1.1\nscript". 

Is there an update for 11 to resolve this issue?

 

Thanks.

0 0
replied on October 26, 2023

It looks like we currently include 2 versions of jquery in the current installation, but I don't see version 3.1.1 actually used anywhere. Was this scan looking at the install directory, or did they identify a page that delivers the older version?

2 0
You are not allowed to follow up in this post.

Sign in to reply to this post.