SeanBenedictLM
Contributor
Contributor

CVE-2021-41182 on Horizon

We recently received a finding that our Horizon servers are running a vulnerable version of JQuery (version 1.13.0 or earlier) as described in CVE-2021-41182,

I see nothing in the VMWare advisories or knowledge base about this CVE.  I suspect this is a false positive but I need to get confirmation this isn't an issue.  Can anyone tell me if Horizon even uses JQuery?  If it does, what version is in Horizon 8.4.0 build - 19067837 Version 2111?

Thanks!

-Sean Benedict

 

 

Tags (3)
0 Kudos
1 Reply
scott28tt
VMware Employee
VMware Employee

As your post needs moving to the area for Horizon, I have reported it to the moderators.

 


-------------------------------------------------------------------------------------------------------------------------------------------------------------

Although I am a VMware employee I contribute to VMware Communities voluntarily (ie. not in any official capacity)
VMware Training & Certification blog
0 Kudos