Skip to content

fix: CVE-2024-45296 Backtracking regular expressions cause ReDoS by upgrading path-to-regexp from 1.8.0 to 1.9.0 (cherry-pick #20087)#20089

Merged
ishitasequeira merged 1 commit intorelease-2.13from
cherry-pick-c1f3a4-release-2.13
Sep 25, 2024
Merged

fix: CVE-2024-45296 Backtracking regular expressions cause ReDoS by upgrading path-to-regexp from 1.8.0 to 1.9.0 (cherry-pick #20087)#20089
ishitasequeira merged 1 commit intorelease-2.13from
cherry-pick-c1f3a4-release-2.13

Conversation

@gcp-cherry-pick-bot
Copy link
Copy Markdown

Cherry-picked fix: CVE-2024-45296 Backtracking regular expressions cause ReDoS by upgrading path-to-regexp from 1.8.0 to 1.9.0 (#20087)

Signed-off-by: Cheng Fang cfang@redhat.com

…pgrading path-to-regexp from 1.8.0 to 1.9.0 (#20087)

Signed-off-by: Cheng Fang <cfang@redhat.com>
@gcp-cherry-pick-bot gcp-cherry-pick-bot bot requested a review from a team as a code owner September 25, 2024 02:28
@ishitasequeira ishitasequeira merged commit a9d9d07 into release-2.13 Sep 25, 2024
@ishitasequeira ishitasequeira deleted the cherry-pick-c1f3a4-release-2.13 branch September 25, 2024 03:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants