We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Dependabot is not able to resolve this (seemingly) simple vulnerability issue so we have to get in there and manually bump body-parser.
body-parser
https://github.com/hyperledger-cacti/cacti/security/dependabot/1218
CVE ID CVE-2024-45590
GHSA ID GHSA-qwcr-r2fm-qrc7
The text was updated successfully, but these errors were encountered:
fix: upgrade body-parser to >=1.20.3 to fix CVE-2024-45590 DoS attacks
f75c23c
Dependabot is not able to resolve this (seemingly) simple vulnerability issue so we have to get in there and manually bump `body-parser`. https://github.com/hyperledger-cacti/cacti/security/dependabot/1218 CVE ID CVE-2024-45590 GHSA ID GHSA-qwcr-r2fm-qrc7 Fixes hyperledger-cacti#3657 Signed-off-by: Peter Somogyvari <[email protected]>
petermetz
Successfully merging a pull request may close this issue.
Description
Dependabot is not able to resolve this (seemingly) simple vulnerability issue so we have to get in there and manually bump
body-parser
.https://github.com/hyperledger-cacti/cacti/security/dependabot/1218
CVE ID
CVE-2024-45590
GHSA ID
GHSA-qwcr-r2fm-qrc7
Acceptance Criteria
The text was updated successfully, but these errors were encountered: