autogen icon indicating copy to clipboard operation
autogen copied to clipboard

dependency vulnerability: DOM Clobbering Gadget found in rollup bundled scripts that leads to XSS #30

Open rysweet opened this issue 1 year ago • 0 comments

What happened?

https://github.com/microsoft/autogen/security/dependabot/30

What did you expect to happen?

alert is remediated

How can we reproduce it (as minimally and precisely as possible)?

see https://github.com/microsoft/autogen/security/dependabot/30

AutoGen version

0.4

Which package was this bug in

AutoGen Studio

Model used

No response

Python version

No response

Operating system

No response

Any additional info you think would be helpful for fixing this bug

No response

rysweet avatar Nov 18 '24 19:11 rysweet