-
Notifications
You must be signed in to change notification settings - Fork 1.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
CVE-2024-53900 - Upgrade Mongoose to 8.8.3 #9729
Comments
Please add a reproduction in order for us to be able to investigate. Depending on the quality of reproduction steps, this issue may be closed if no reproduction is provided. Why was this issue marked with the
|
🚀 This is included in version v3.5.0 |
This issue has been automatically locked. |
Describe the Bug
CVE-2024-53900 affects mongoose lower than 8.8.3, which affects @payloadcms/db-mongodb
Currently PayloadCMS is using 8.8.1
Link to the code that reproduces this issue
https://avd.aquasec.com/nvd/2024/cve-2024-53900
Reproduction Steps
npx create-payload-app
MongoDB
as databaseWhich area(s) are affected? (Select all that apply)
db-mongodb
Environment Info
The text was updated successfully, but these errors were encountered: