Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Vulnerability] Improper Handling of Exceptional Conditions in Newtonsoft.Json #181

Open
sixnaskunz opened this issue Dec 15, 2023 · 8 comments

Comments

@sixnaskunz
Copy link

sixnaskunz commented Dec 15, 2023

Please fix this vulnerability.
GHSA-5crp-9r3c-p9vr

@snakefoot
Copy link
Collaborator

master-branch has been updated. Just awaiting a release-build and publish to nuget.

@markmcdowell Anything missing for publishing a new release to nuget?

@sixnaskunz
Copy link
Author

master-branch has been updated. Just awaiting a release-build and publish to nuget.

@markmcdowell Anything missing for publishing a new release to nuget?

@snakefoot Thanks.

For now, Newtonsoft.Json already release version 13.0.3.
https://www.nuget.org/packages/Newtonsoft.Json/

@sixnaskunz
Copy link
Author

sixnaskunz commented Dec 18, 2023

@markmcdowell I found version 7.8.0 already tagged in GitHub Repo but not publish to NuGet. Please publish to NuGet.
Thank you.

https://github.com/markmcdowell/NLog.Targets.ElasticSearch/releases/tag/v7.8.0

@sixnaskunz
Copy link
Author

@snakefoot Do you know who can publish package to NuGet?

@snakefoot
Copy link
Collaborator

Believe the repo-owner @markmcdowell controls the nuget-key

@sixnaskunz
Copy link
Author

Believe the repo-owner @markmcdowell controls the nuget-key

Ok. Thank you. I hope the new version is coming soon.

@snakefoot
Copy link
Collaborator

Notice that ElasticSearch have now released their own official NLog Target for ElasticSearch:

@sixnaskunz
Copy link
Author

sixnaskunz commented Jun 20, 2024

Notice that ElasticSearch have now released their own official NLog Target for ElasticSearch:

Oh! Thank you for your information. This is good news.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants