Uploaded image for project: 'HAL'
  1. HAL
  2. HAL-1880

Upgrade semver to latest versions (Resolve CVE-2022-25883)

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Major Major
    • 3.6.15.Final
    • None
    • None
    • None

      On Mon July 31 EAP CP triage call. It has been decided that Node.js all dependencies need to be updated ( including dev dependencies) to resolve CVE-2022-25883.

      Thus, we need to upgrade semver to a patched versions listed in https://github.com/advisories/GHSA-c2qf-rxjj-qqgw

      For more details, please refer to the comment in JBEAP-25187.

              Unassigned Unassigned
              chaowan@redhat.com Chao Wang
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: