-
Notifications
You must be signed in to change notification settings - Fork 143
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
GHSA-hxwh-jpp2-84pm #362
Comments
Opened a PR with a backwards compatible fix (partial fix I guess) in #363 The real fix is a breaking change and requires a new major version - @corydolphin to advise how to deal with this. |
@corydolphin any update on this please? This is quite urgent or we will need to move to another lib unfortunately |
@corydolphin Could you please look into this at your earliest convenience? As this code is currently in production, addressing this issue is quite urgent. |
Fixed in 4.0.2 and defaulted to False in 5.0.0 |
5.0.0 is also showing in the Affected versions list. |
Not in the CVE though ; and Github also considers 5.0 to be safe |
Hello,
Is there an ETA for fixing GHSA-hxwh-jpp2-84pm ?
GHSA-hxwh-jpp2-84pm
Thank you
The text was updated successfully, but these errors were encountered: