adbkit icon indicating copy to clipboard operation
adbkit copied to clipboard

Request node-forge version up

Open gaiuszzang opened this issue 3 years ago • 0 comments

Hello, I got the github issue report that node-forge in adbkit needs to version up due to follow.

CVE-2020-7720 Vulnerable versions: < 0.10.0 Patched version: 0.10.0 The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.

Please update the node-forge version 0.10.0 or later.

gaiuszzang avatar Sep 25 '21 06:09 gaiuszzang