Skip to content
This repository was archived by the owner on Jan 7, 2026. It is now read-only.

Comments

Revert "Nack CVE-2023-42282 in npm and related packages."#1519

Merged
pdeslaur merged 1 commit intomainfrom
revert-1518-npm
Feb 18, 2024
Merged

Revert "Nack CVE-2023-42282 in npm and related packages."#1519
pdeslaur merged 1 commit intomainfrom
revert-1518-npm

Conversation

@pdeslaur
Copy link
Contributor

Reverts #1518

The GitHub Security Advisories indicate a PoC of this vulnerability is possible with version <= 2.0.0: github/advisory-database#3504 (comment)

@dlorenc dlorenc enabled auto-merge February 18, 2024 20:53
@pdeslaur pdeslaur disabled auto-merge February 18, 2024 21:04
@pdeslaur pdeslaur merged commit 1adaae3 into main Feb 18, 2024
@pdeslaur pdeslaur deleted the revert-1518-npm branch February 18, 2024 21:04
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants