Welcome to the LimeSurvey Community Forum

Ask the community, share ideas, and connect with other LimeSurvey users!

Can I update JQuery Version On LimeSurvey

More
5 months 2 weeks ago #269718 by melisa.kurt
Hi,
I'm using LS Community version 6.10.0 and lately I found out the jquery version that's being used is considered old therefore causing security issues. I was wondering if it's possible to update the jquery version? I also would like to update vue because of the same reasons. Is it possible for that too?

Thanks,

Please Log in to join the conversation.

More
5 months 2 weeks ago #269720 by holch
You are right, Limesurvey LS 6.x is using jQuery UI 1.13.2, which was released in Juli 2022. So it is almost 3 years old.

However, I could not find any information about vulnerabilities of this version of jQuery. Do you have further information about which vulnerabilities and security issues are prevelant in jQuery 1.13.2?

My research gave me this:
security.snyk.io/package/npm/jquery-ui/1.13.2

Also, JQuery is not as frequently updated as Limesurvey and usually within the same main version of Limesurvey, dependencies are not changed as long as there are no known vulnerabilties in the script.

There have been only 3 releases since, link 1.13.3, 1.14.0, 1.14.1 (the later two in the second half of last year.

In any way, let's see if someone has more insights whether you can change to another jQuery.

Help us to help you!
  • Provide your LS version and where it is installed (own server, uni/employer, SaaS hosting, etc.).
  • Always provide a LSS file (not LSQ or LSG).
Note: I answer at this forum in my spare time, I'm not a LimeSurvey GmbH employee.

Please Log in to join the conversation.

More
5 months 2 weeks ago #269721 by holch
Please do not cross / double post.

Your post needed to be approved by a moderator before it shows up in the forum. I deleted your second post. Please continue here.

Help us to help you!
  • Provide your LS version and where it is installed (own server, uni/employer, SaaS hosting, etc.).
  • Always provide a LSS file (not LSQ or LSG).
Note: I answer at this forum in my spare time, I'm not a LimeSurvey GmbH employee.

Please Log in to join the conversation.

Moderators: tpartnerholch

Lime-years ahead

Online-surveys for every purse and purpose