Borderless-Gaming icon indicating copy to clipboard operation
Borderless-Gaming copied to clipboard

Using Dependencies that have high severity vulnerabilities

Open BrainSlugs83 opened this issue 9 months ago • 0 comments

Requirements

  • [x] This issue doesn't already exist
  • [x] This bug is Not related to compatability with a specific game

Summary

Image

Accoding to https://github.com/advisories/GHSA-xhg6-9j5j-w4vf -- this allows ACE (Arbitrary Code Execution) from an attacker.

Please switch to using the BCL Zip implementation.

Steps to reproduce

  1. git fetch && git pull to get the latest version.
  2. Open in VS.
  3. Observe the big red warning.

Technical details

See summary.

version

9.5.6.1328

BrainSlugs83 avatar Feb 01 '25 01:02 BrainSlugs83