Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Vulnerability in moment #3182

Closed
ElvisYang opened this issue Aug 6, 2019 · 3 comments · Fixed by #3201
Closed

Security Vulnerability in moment #3182

ElvisYang opened this issue Aug 6, 2019 · 3 comments · Fixed by #3201

Comments

@ElvisYang
Copy link

The moment code is in the following, which will cause security vulnerability.
https://github.com/sferik/rails_admin/blob/master/vendor/assets/javascripts/rails_admin/moment-with-locales.js

so looks need to upgrade the version of moment to solve this security problem
https://www.cvedetails.com/vulnerability-list/vendor_id-16043/product_id-35644/Moment-Project-Moment.html

@EthanZeigler
Copy link

This really should be added to the "security" disclosure tab of Github. It's something they added in the last few weeks.

@ElvisYang
Copy link
Author

@EthanZeigler good suggestion, how can I make this in security tab?

@EthanZeigler
Copy link

EthanZeigler commented Aug 19, 2019 via email

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants