Skip to content

Commit 8b4abfb

Browse files
authored
[#913] CVE-2024-38999 requirejs v2.3.6 was discovered to contain a prototype pollution (#915)
1 parent c104753 commit 8b4abfb

File tree

11 files changed

+11
-11
lines changed

11 files changed

+11
-11
lines changed

legal/THIRDPARTYREADME.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -888,7 +888,7 @@ Copyright: Copyright (c) 2009 Kazuhiko Arase
888888
Version: qunit-1.15.0.js
889889
Copyright: Copyright 2012-2014 The Dojo Foundation
890890

891-
Version: requirejs-2.1.14-min.js
891+
Version: requirejs-2.3.7-min.js
892892
Copyright: Copyright (c) 2010-2014, The Dojo Foundation
893893

894894
Version: spin-2.0.1-min.js

openam-oauth2/src/main/resources/templates/CodeThanks.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,6 @@
3434
done: true
3535
};
3636
</script>
37-
<script data-main="${baseUrl?html}/XUI/main-device" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
37+
<script data-main="${baseUrl?html}/XUI/main-device" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
3838
</body>
3939
</html>

openam-oauth2/src/main/resources/templates/CodeVerificationForm.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,6 @@
3434
baseUrl : "${baseUrl?js_string}/XUI"
3535
};
3636
</script>
37-
<script data-main="${baseUrl?html}/XUI/main-device" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
37+
<script data-main="${baseUrl?html}/XUI/main-device" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
3838
</body>
3939
</html>

openam-oauth2/src/main/resources/templates/page/authorize.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -62,6 +62,6 @@
6262
}
6363
};
6464
</script>
65-
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
65+
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
6666
</body>
6767
</html>

openam-oauth2/src/main/resources/templates/page/error.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -53,6 +53,6 @@
5353
}
5454
</#if>
5555
</script>
56-
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
56+
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
5757
</body>
5858
</html>

openam-oauth2/src/main/resources/templates/popup/authorize.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -61,6 +61,6 @@
6161
}
6262
};
6363
</script>
64-
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
64+
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
6565
</body>
6666
</html>

openam-oauth2/src/main/resources/templates/touch/authorize.ftl

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -61,6 +61,6 @@
6161
}
6262
};
6363
</script>
64-
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.1.14-min.js"></script>
64+
<script data-main="${baseUrl?html}/XUI/main-authorize" src="${baseUrl?html}/XUI/libs/requirejs-2.3.7-min.js"></script>
6565
</body>
6666
</html>

openam-server-only/src/license/THIRD-PARTY.properties

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -66,7 +66,7 @@ org.forgerock.commons.ui.libs--qrcode--1.4.4=MIT
6666
org.forgerock.commons.ui.libs--react--15.2.1=BSD
6767
org.forgerock.commons.ui.libs--react-bootstrap--0.30.1=MIT
6868
org.forgerock.commons.ui.libs--react-dom--15.2.1=BSD
69-
org.forgerock.commons.ui.libs--requirejs--2.1.14=MIT
69+
org.forgerock.commons.ui.libs--requirejs--2.3.7=MIT
7070
org.forgerock.commons.ui.libs--selectize--0.12.1=Apache 2.0
7171
org.forgerock.commons.ui.libs--selectize-non-standalone--0.12.1=Apache 2.0
7272
org.forgerock.commons.ui.libs--spin--2.0.1=MIT

openam-ui/openam-ui-ria/src/main/resources/index.html

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -25,6 +25,6 @@
2525
deps : ['main']
2626
};
2727
</script>
28-
<script src="libs/requirejs-2.1.14-min.js"></script>
28+
<script src="libs/requirejs-2.3.7-min.js"></script>
2929
</body>
3030
</html>

openam-ui/pom.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -287,7 +287,7 @@
287287
<artifactItem>
288288
<groupId>org.openidentityplatform.commons.ui.libs</groupId>
289289
<artifactId>requirejs</artifactId>
290-
<version>2.1.14</version>
290+
<version>2.3.7</version>
291291
<classifier>min</classifier>
292292
<packaging>js</packaging>
293293
<downloadUrl>https://cdnjs.cloudflare.com/ajax/libs/require.js/{version}/require.{classifier}.{packaging}</downloadUrl>

0 commit comments

Comments
 (0)