Title: Plugin jquery version is security risk!
Last modified: December 3, 2020

---

# Plugin jquery version is security risk!

 *  Resolved [dave8441](https://wordpress.org/support/users/dave8441/)
 * (@dave8441)
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/)
 * When checking my webpage in Lighthouse, it reports this issue:
 * Includes front-end JavaScript libraries with known security vulnerabilities 1
   vulnerability detected
    Some third-party scripts may contain known security vulnerabilities
   that are easily identified and exploited by attackers. Learn more. Library Version
   jQuery [UI@1.11](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/UI@1.11?output_format=md).
   4 Vulnerability Count: 1 Severity: High
 * Will this be fixed?

Viewing 5 replies - 1 through 5 (of 5 total)

 *  Moderator [Steven Stern (sterndata)](https://wordpress.org/support/users/sterndata/)
 * (@sterndata)
 * Volunteer Forum Moderator
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13741374)
 * There is nothing to fix.
 * The version of JQuery shipped with WordPress is secure. All current security 
   patches have been backported to it. Note that the next version of WP will have
   an updated version of jQuery! (Also secure.)
 *  Thread Starter [dave8441](https://wordpress.org/support/users/dave8441/)
 * (@dave8441)
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13741702)
 * Thank you for your reply, but I am not referring to WordPress. The problem is
   with the WooCommerce Advanced Extra Fees Lite plugin, and that is why I posted
   this in their support forum. When I deactivate this plugin, the warning message
   in Lighthouse goes away. I hope they can fix it. Otherwise, I will have to find
   a different plugin.
 *  Moderator [Steven Stern (sterndata)](https://wordpress.org/support/users/sterndata/)
 * (@sterndata)
 * Volunteer Forum Moderator
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13741711)
 * As far as I can tell, this plugin does not include any versions of jQuery or 
   jQuery-UI and uses what’s provided by WP core.
 *  Thread Starter [dave8441](https://wordpress.org/support/users/dave8441/)
 * (@dave8441)
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13742288)
 * Then I am at a loss here to explain the warning message. Maybe the developers
   can offer some ideas.
 *  Moderator [Steven Stern (sterndata)](https://wordpress.org/support/users/sterndata/)
 * (@sterndata)
 * Volunteer Forum Moderator
 * [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13742298)
 * It’s a false positive. It looks only at the version number.

Viewing 5 replies - 1 through 5 (of 5 total)

The topic ‘Plugin jquery version is security risk!’ is closed to new replies.

 * ![](https://s.w.org/plugins/geopattern-icon/woo-advanced-extra-fees-lite_d29aa6.
   svg)
 * [WooCommerce Extra Fees Lite - Use for Extra charge + Conditional Fee + Extra Cost for WooCommerce](https://wordpress.org/plugins/woo-advanced-extra-fees-lite/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/woo-advanced-extra-fees-lite/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/woo-advanced-extra-fees-lite/)
 * [Active Topics](https://wordpress.org/support/plugin/woo-advanced-extra-fees-lite/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/woo-advanced-extra-fees-lite/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/woo-advanced-extra-fees-lite/reviews/)

 * 5 replies
 * 2 participants
 * Last reply from: [Steven Stern (sterndata)](https://wordpress.org/support/users/sterndata/)
 * Last activity: [5 years, 5 months ago](https://wordpress.org/support/topic/plugin-jquery-version-is-security-risk/#post-13742298)
 * Status: resolved