Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependency bump, vulnerability fix #270

Merged
merged 1 commit into from
Nov 28, 2024
Merged

Conversation

mrajatttt
Copy link
Collaborator

Issue #, if available:

Description of changes:

  • Fixed
Recent Findings
CVE-ID: CVE-2024-21536
vulnerable third-party dependency: http-proxy-middleware
version(s): = 2.0.6
location detected: package-lock.json

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

@mrajatttt mrajatttt requested a review from a team as a code owner November 16, 2024 08:46
@mrajatttt mrajatttt requested review from doreechi, sainapra and chauhuynh97 and removed request for a team and sainapra November 16, 2024 08:46
@mliao95 mliao95 requested review from doreechi and mliao95 November 28, 2024 00:38
@mliao95 mliao95 merged commit 17a82ce into master Nov 28, 2024
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants