#SecureWebForward ~1.5 billion websites deployed on the web today. Of these, ~1 billion run #jQuery! Of these, ~500 millions run an "outdated and unpatched version" of jQuery. @tobie has been looking at securing jQuery, focusing on #security holes that jQuery opens in the web #browser sandbox that don't exist without it.
▶️ https://www.w3.org/2023/03/secure-the-web-forward/agenda.html#session-3 (with slides and transcript)

🎬 https://youtu.be/efOljAYQz2I

Live sessions

Bringing together experts to drive developer awareness and adoption of Web security standards and practices

@w3cdevs @tobie OMG old jquery is the bane of our pen test finding existence.

EVERY year it’s on the findings list

EVeRY year it’s another vendor saying “oh that’s not vulnerable, we don’t even use it, we just leave shit in our build to annoy customers”