Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: address webauthn cve #2240

Merged
merged 1 commit into from
Feb 20, 2022
Merged

chore: address webauthn cve #2240

merged 1 commit into from
Feb 20, 2022

Conversation

aeneasr
Copy link
Member

@aeneasr aeneasr commented Feb 20, 2022

Upgrades the webauthn library to prevent a UUID-related CVE

Related issue(s)

Checklist

  • I have read the contributing guidelines.
  • I have referenced an issue containing the design document if my change
    introduces a new feature.
  • I am following the
    contributing code guidelines.
  • I have read the security policy.
  • I confirm that this pull request does not address a security
    vulnerability. If this pull request addresses a security. vulnerability, I
    confirm that I got green light (please contact
    [email protected]) from the maintainers to push
    the changes.
  • I have added tests that prove my fix is effective or that my feature
    works.
  • I have added or changed the documentation.

Further Comments

Upgrades the webauthn library to prevent a UUID-related CVE
@aeneasr aeneasr requested a review from zepatrik as a code owner February 20, 2022 18:50
@aeneasr aeneasr self-assigned this Feb 20, 2022
@codecov
Copy link

codecov bot commented Feb 20, 2022

Codecov Report

Merging #2240 (667548c) into master (40b7db3) will increase coverage by 0.04%.
The diff coverage is 0.00%.

Impacted file tree graph

@@            Coverage Diff             @@
##           master    #2240      +/-   ##
==========================================
+ Coverage   75.84%   75.88%   +0.04%     
==========================================
  Files         297      297              
  Lines       15905    15905              
==========================================
+ Hits        12063    12070       +7     
+ Misses       2984     2977       -7     
  Partials      858      858              
Impacted Files Coverage Δ
cmd/clidoc/main.go 69.88% <0.00%> (ø)
cmd/courier/watch.go 72.41% <0.00%> (+12.06%) ⬆️

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 8c8a1ab...667548c. Read the comment docs.

@aeneasr aeneasr merged commit 506a0f1 into master Feb 20, 2022
@aeneasr aeneasr deleted the bump-webauthn branch February 20, 2022 19:47
@vinckr vinckr mentioned this pull request Mar 18, 2022
peturgeorgievv pushed a commit to senteca/kratos-fork that referenced this pull request Jun 30, 2023
Upgrades the webauthn library to prevent a UUID-related CVE
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant