delphidabbler/codesnip

Potential XSS vulnerability in jQuery

delphidabbler opened this issue · 2 comments

This issue relates to dependabot alert 1 which refers to a moderate level vulnerability in jQuery.

This only affects the easter egg.

It will be too much effort to update jQuery from v1.x to v3.x, but the alert suggests a workaround that can be used to avoid updating. Use that.

Fixed by applying dependabot workaround by merge commit 282b50d