Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2022-24434: High severity vulnerability found in all versions #28

Closed
wprk opened this issue May 25, 2022 · 3 comments
Closed

CVE-2022-24434: High severity vulnerability found in all versions #28

wprk opened this issue May 25, 2022 · 3 comments

Comments

@wprk
Copy link

wprk commented May 25, 2022

Running a Snyk analysis of our dependencies at work we found your library has a vulnerability which was disclosed on the 8th Dec 2021 you can find more information on Snyk.

The specific CVE details and replication instructions can be found: CVE-2022-24434

@wprk
Copy link
Author

wprk commented May 25, 2022

Closing as I've just seen PR#22 which addresses this issue. Would be great to get that merged though?

@wprk wprk closed this as completed May 25, 2022
@jrpomeroy
Copy link

Should probably keep this open until #22 is merged. It doesn't look good given it's been sitting out there since August 5th.

@mscdex
Copy link
Owner

mscdex commented May 25, 2022

@jrpomeroy I've already explained in that PR why it probably won't be merged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants