Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade Microsoft.Data.SqlClient from 2.1.2 to 2.1.7 due to vulnerability issue #946

Merged
merged 2 commits into from
Feb 6, 2024

Conversation

claudiamurialdo
Copy link
Collaborator

@claudiamurialdo claudiamurialdo commented Jan 18, 2024

Reported at #942
Issue:100063

CVE-2024-0056

#GXSEC

@genexusbot
Copy link
Collaborator

Cherry pick to beta failed, 4 conflicted files in commit 87f3f75
  • dotnet/test/DotNetCoreChunkedTest/DotNetCoreChunkedTest.csproj
  • dotnet/test/DotNetCoreOpenTelemetryTest/DotNetCoreOpenTelemetryTest.csproj
  • dotnet/test/DotNetCoreUnitTest/DotNetCoreUnitTest.csproj
  • dotnet/test/DotNetCoreWebUnitTest/DotNetCoreWebUnitTest.csproj

@genexusbot genexusbot added the conflict Conflict merging to beta branch label Jan 18, 2024
@genexusbot
Copy link
Collaborator

Manual cherry pick to beta success

sgrampone
sgrampone previously approved these changes Jan 19, 2024
@claudiamurialdo claudiamurialdo merged commit 9f79643 into master Feb 6, 2024
4 of 5 checks passed
@claudiamurialdo claudiamurialdo deleted the microsoft-data-sqlclient-upgrade branch February 6, 2024 18:45
claudiamurialdo added a commit that referenced this pull request Feb 14, 2024
…lity issue. (#946)

(cherry picked from commit 9f79643)

# Conflicts:
#	dotnet/src/extensions/Azure/Handlers/GeneXus.Deploy.AzureFunctions.Handlers.csproj
#	dotnet/test/DotNetCoreChunkedTest/DotNetCoreChunkedTest.csproj
#	dotnet/test/DotNetCoreOpenTelemetryTest/DotNetCoreOpenTelemetryTest.csproj
#	dotnet/test/DotNetCoreUnitTest/DotNetCoreUnitTest.csproj
#	dotnet/test/DotNetCoreWebUnitTest/DotNetCoreWebUnitTest.csproj
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bot closed dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants