-
Notifications
You must be signed in to change notification settings - Fork 285
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix(plugin-ledger-connector-fabric-socketio): upgrade Fabric due to jsrsasign #1799
Comments
petermetz
added
bug
Something isn't working
Security
Related to existing or potential security vulnerabilities
P1
Priority 1: Highest
labels
Jan 19, 2022
outSH
added a commit
to outSH/cactus
that referenced
this issue
Jan 20, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
outSH
added a commit
to outSH/cactus
that referenced
this issue
Jan 20, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
outSH
added a commit
to outSH/cactus
that referenced
this issue
Jan 20, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
outSH
added a commit
to outSH/cactus
that referenced
this issue
Jan 20, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
outSH
added a commit
to outSH/cactus
that referenced
this issue
Jan 31, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
petermetz
pushed a commit
to outSH/cactus
that referenced
this issue
Feb 3, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
outSH
added a commit
to outSH/cactus
that referenced
this issue
Feb 4, 2022
…srsasign Revert fabric sdk package change from PR hyperledger-cacti#1754 Closes: hyperledger-cacti#1799 Signed-off-by: Michal Bajer <michal.bajer@fujitsu.com>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Describe the bug
We have a critical severity vulnerability put back in the code by a recent PR: #1754
packages/cactus-plugin-ledger-connector-fabric-socketio/package.json
To Reproduce
npm ls jsrsasign
Expected behavior
Vulnerable versions of dependencies have to be upgraded.
@outSH
The text was updated successfully, but these errors were encountered: