Skip to content

Commit

Permalink
zotero: mark as insecure (CVE-2023-5217)
Browse files Browse the repository at this point in the history
Zotero 6 is based on Firefox 60 and has not patched this vulnerability.
The next version is based on Firefox 102 (ESR) and has patched this, but
is is still in beta.

See also #258048.
  • Loading branch information
i077 committed Oct 22, 2023
1 parent a620718 commit 9438baa
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions pkgs/applications/office/zotero/default.nix
Original file line number Diff line number Diff line change
Expand Up @@ -153,5 +153,6 @@ stdenv.mkDerivation rec {
license = licenses.agpl3Only;
platforms = platforms.linux;
maintainers = with maintainers; [ i077 ];
knownVulnerabilities = [ "CVE-2023-5217" ];
};
}

0 comments on commit 9438baa

Please sign in to comment.