Pen test Vulnerability

Status
Not open for further replies.

Bruce Smith

Premier Customer
Basic Certified
Joined
Mar 28, 2020
Messages
75
Reaction score
19
HI, all a customer has had a pen test done on their site and has come across the following issue has anyone come across this and what can be done to resolve it.


-----------------------------------------------------------------------------------------------
(High Risk) Web Servers Using Insecure JavaScript Libraries

CVE References:

CVE-2022-31129 (5.0) [7.5]

Description:
The web application listed below utilises various JavaScript libraries to assist with the functionality of the site however, some of the libraries in use are outdated and affected by multiple vulnerabilities.

References:

https://owasp.org/Top10/A06_2021-Vulnerable_and_Outdated_Components/

Remediation:
The OWASP guidance for insecure libraries recommends keeping external libraries and components updated where possible. In addition, consider adding security wrappers around components to disable unused functionality and/or secure weak or vulnerable aspects of the component.
 
Hello,
Thanks for reaching out, I will send you a PM so we discuss this finding in more details.
 
  • Like
Reactions: Evolute IT
Status
Not open for further replies.

Forum statistics

Threads
111,974
Messages
590,081
Members
164,899
Latest member
mazet