Skip to content

Commit

Permalink
Ignore CVE
Browse files Browse the repository at this point in the history
  -> Vulnerability found in mako version 1.0.9
     Vulnerability ID: 50870
     Affected spec: <1.2.2
     ADVISORY: Mako 1.2.2 includes a fix for a REDoS
     vulnerability.sqlalchemy/mako#366
     PVE-2022-50870
     For more information, please visit
     https://pyup.io/vulnerabilities/PVE-2022-50870/50870/

  Title: [1084602] Arbitrary Code Execution in underscore
  Severity: critical
  CWE: CWE-94
  Vulnerable versions: >=1.3.2 <1.12.1
  Patched versions: >=1.12.1
  Recommendation: Upgrade to version 1.12.1 or later
  Version: 1.6.0
  Path: openlayers > nomnom > underscore
  More info: GHSA-cf4h-3jhx-xvhq
  • Loading branch information
sbrunner committed Sep 30, 2022
1 parent fd66fbb commit a2301cf
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 1 deletion.
2 changes: 1 addition & 1 deletion npm-cve-ignore
@@ -1 +1 @@
1004967,1006069,1006094,1006100,1006171,1006724,1006883,1006884
1004967,1006069,1006094,1006100,1006171,1006724,1006883,1006884,1084602
1 change: 1 addition & 0 deletions pip-cve-ignore
@@ -0,0 +1 @@
50870

0 comments on commit a2301cf

Please sign in to comment.