Skip to main content
Question

Vulnerable jQuery Libraries Discovered Jamf Pro OnPrem 10.19

  • March 5, 2020
  • 3 replies
  • 27 views

Forum|alt.badge.img+7

Anyone got any info on this?
We had an external IP Range pen test done and this vulnerability was found in JAMF jQuery a JavaScript library. It makes things like HTML document traversal and manipulation, event handling, animation and Ajax much simpler with an easy-to-use API that works across a multitude of browsers.

Any help or guidance is appreciated

3 replies

boberito
Forum|alt.badge.img+22
  • Jamf Heroes
  • March 5, 2020

Maybe try https://www.jamf.com/security/vulnerability-disclosure/ instead....


Forum|alt.badge.img+7
  • Author
  • Contributor
  • March 5, 2020

@boberito Thanks for this, I will log it when I have more details, however, I am unsure on what this impact is.


Forum|alt.badge.img
  • New Contributor
  • May 25, 2020

Do you mean this one: https://nvd.nist.gov/vuln/detail/CVE-2012-6708 ?
our security scans detected it while running 10.15.1 but it seems no to be fixed yet. It was already referenced as Product Issue PI-007381, not sure if there's been an update on this already.