Uploaded image for project: 'HAL'
  1. HAL
  2. HAL-1880

Upgrade semver to latest versions (Resolve CVE-2022-25883)

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Major Major
    • 3.6.15.Final
    • None
    • None
    • None

      On Mon July 31 EAP CP triage call. It has been decided that Node.js all dependencies need to be updated ( including dev dependencies) to resolve CVE-2022-25883.

      Thus, we need to upgrade semver to a patched versions listed in https://github.com/advisories/GHSA-c2qf-rxjj-qqgw

      For more details, please refer to the comment in JBEAP-25187.

            Unassigned Unassigned
            chaowan@redhat.com Chao Wang
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: