WS-2021-0200 (High) detected in github.com/hashicorp/vault-v1.3.1 #2522
Labels
Mend: dependency security vulnerability
Security vulnerability detected by WhiteSource
stale
All issues that are marked as stale due to inactivity
WS-2021-0200 - High Severity Vulnerability
A tool for secrets management, encryption as a service, and privileged access management
Dependency Hierarchy:
Found in HEAD commit: 4213ed86dc859b83c4f126853835fab3dc987b5d
Found in base branch: main
Yaml in versions v2.2.0 to v2.2.2 is vulnerable to denial of service vector.
Related to decode.go
Publish Date: 2021-04-14
URL: WS-2021-0200
Base Score Metrics:
Type: Upgrade version
Origin: https://osv.dev/vulnerability/GO-2021-0061
Release Date: 2021-04-14
Fix Resolution: v2.2.3
Step up your Open Source Security Game with WhiteSource here
The text was updated successfully, but these errors were encountered: