Potential XSS vulnerability in jQuery
delphidabbler opened this issue · 2 comments
delphidabbler commented
This issue relates to dependabot alert 1 which refers to a moderate level vulnerability in jQuery.
This only affects the easter egg.
delphidabbler commented
It will be too much effort to update jQuery from v1.x to v3.x, but the alert suggests a workaround that can be used to avoid updating. Use that.
delphidabbler commented
Fixed by applying dependabot workaround by merge commit 282b50d