Skip to content

Commit

Permalink
Ignore CVE
Browse files Browse the repository at this point in the history
  Title: [1084602] Arbitrary Code Execution in underscore
  Severity: critical
  CWE: CWE-94
  Vulnerable versions: >=1.3.2 <1.12.1
  Patched versions: >=1.12.1
  Recommendation: Upgrade to version 1.12.1 or later
  Version: 1.6.0
  Path: openlayers > nomnom > underscore
  More info: GHSA-cf4h-3jhx-xvhq

  -> Vulnerability found in mako version 1.0.9
     Vulnerability ID: 50870
     Affected spec: <1.2.2
     ADVISORY: Mako 1.2.2 includes a fix for a REDoS
     vulnerability.sqlalchemy/mako#366
     PVE-2022-50870
     For more information, please visit
     https://pyup.io/vulnerabilities/PVE-2022-50870/50870/
  • Loading branch information
sbrunner committed Oct 6, 2022
1 parent 80261d0 commit 41f33dc
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 2 deletions.
2 changes: 1 addition & 1 deletion admin/npm-cve-ignore
@@ -1 +1 @@
1068134,1070440
1068134,1070440,1084602
2 changes: 1 addition & 1 deletion docker/build/pip-cve-ignore
@@ -1 +1 @@
37071,37055,38224,38330,38834,46436,45185
37071,37055,38224,38330,38834,46436,45185,50870

0 comments on commit 41f33dc

Please sign in to comment.