Join GitHub today
GitHub is home to over 40 million developers working together to host and review code, manage projects, and build software together.Sign up
Old version of jQuery is present in the JRuby builds #5872
I was asked by the security team to open a public issue for this, it's not an urgent security issue.
This CVE ID
Describes the following jQuery vulnerability
If you unpack the JRuby jar, jquery.js can be found here
In that file we see "jQuery v1.6.4".
CRuby recently fixed this by not shipping the jquery.js file anymore.