Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Formidable package vulnerability CVE-2022-29622 #2766

Closed
slrv opened this issue Apr 24, 2024 · 6 comments
Closed

Formidable package vulnerability CVE-2022-29622 #2766

slrv opened this issue Apr 24, 2024 · 6 comments
Labels
bug Something isn't working

Comments

@slrv
Copy link
Contributor

slrv commented Apr 24, 2024

Due to report GHSA-8cp3-66vr-3r4c all versions of Formidable package before 3.2.4 version have a critical vulnerability

ActionHero Version: 29.2.0

@slrv slrv added the bug Something isn't working label Apr 24, 2024
@evantahler
Copy link
Member

Can you submit a pull request with a fix please?

@slrv
Copy link
Contributor Author

slrv commented Apr 24, 2024

Sure, try to find a free time next days

@slrv
Copy link
Contributor Author

slrv commented Apr 25, 2024

@evantahler I can not push my branch with fix, looks like I have no permission.

@evantahler
Copy link
Member

@evantahler I can not push my branch with fix, looks like I have no permission.

That's what pull requests are for!

@slrv
Copy link
Contributor Author

slrv commented Apr 26, 2024

@evantahler sorry, here is it #2767

@evantahler
Copy link
Member

Closed by #2767. Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

2 participants