- Joined
- Mar 28, 2020
- Messages
- 75
- Reaction score
- 19
HI, all a customer has had a pen test done on their site and has come across the following issue has anyone come across this and what can be done to resolve it.
-----------------------------------------------------------------------------------------------
(High Risk) Web Servers Using Insecure JavaScript Libraries
CVE References:
CVE-2022-31129 (5.0) [7.5]
Description:
The web application listed below utilises various JavaScript libraries to assist with the functionality of the site however, some of the libraries in use are outdated and affected by multiple vulnerabilities.
References:
https://owasp.org/Top10/A06_2021-Vulnerable_and_Outdated_Components/
Remediation:
The OWASP guidance for insecure libraries recommends keeping external libraries and components updated where possible. In addition, consider adding security wrappers around components to disable unused functionality and/or secure weak or vulnerable aspects of the component.
-----------------------------------------------------------------------------------------------
(High Risk) Web Servers Using Insecure JavaScript Libraries
CVE References:
CVE-2022-31129 (5.0) [7.5]
Description:
The web application listed below utilises various JavaScript libraries to assist with the functionality of the site however, some of the libraries in use are outdated and affected by multiple vulnerabilities.
References:
https://owasp.org/Top10/A06_2021-Vulnerable_and_Outdated_Components/
Remediation:
The OWASP guidance for insecure libraries recommends keeping external libraries and components updated where possible. In addition, consider adding security wrappers around components to disable unused functionality and/or secure weak or vulnerable aspects of the component.