Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(security): force lodash > 4.17.20 - CVE-2020-8203 #1919

Merged
merged 1 commit into from
Mar 15, 2022

Conversation

petermetz
Copy link
Contributor

TODO: Longer term we should take care to upgrade the top level
dependencies instead (as patched releases become available)

Fixes #1918

Signed-off-by: Peter Somogyvari peter.somogyvari@accenture.com

@petermetz petermetz requested review from izuru0, jagpreetsinghsasan and takeutak and removed request for jonathan-m-hamilton March 14, 2022 07:08
@petermetz petermetz added dependencies Pull requests that update a dependency file P1 Priority 1: Highest Security Related to existing or potential security vulnerabilities labels Mar 14, 2022
@petermetz petermetz force-pushed the petermetz/issue1918 branch 2 times, most recently from 1cfc77a to 00cb626 Compare March 15, 2022 04:21
@petermetz petermetz removed the request for review from izuru0 March 15, 2022 04:22
TODO: Longer term we should take care to upgrade the top level
dependencies instead (as patched releases become available)

Fixes hyperledger-cacti#1918

Signed-off-by: Peter Somogyvari <peter.somogyvari@accenture.com>
@petermetz petermetz merged commit 08ace66 into hyperledger-cacti:main Mar 15, 2022
@petermetz petermetz deleted the petermetz/issue1918 branch March 15, 2022 18:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file P1 Priority 1: Highest Security Related to existing or potential security vulnerabilities
Projects
None yet
Development

Successfully merging this pull request may close these issues.

fix(security): force lodash > 4.17.20 - CVE-2020-8203
3 participants