SDM 17.4 GA - Vulnerable Jquery UI Library
search cancel

SDM 17.4 GA - Vulnerable Jquery UI Library

book

Article ID: 394949

calendar_today

Updated On:

Products

CA Service Management - Service Desk Manager

Issue/Introduction

The jQuery UI library, a popular set of user interface interactions, effects, widgets, and themes built on top of jQuery, has a known vulnerability in versions prior to 1.13.2. This vulnerability can potentially lead to cross-site scripting (XSS) attacks.

Environment

CA Service Desk Manager - 17.4 GA 

 

Cause

CA SDM version 17.4 uses JQuery-ui version 1.13.1. 

Resolution

For remediation, please upgrade to 17.4 RU04 which is being shipped with jQueryUI version 1.13.3.