Bug #19530
closed
CVE in jsonpath dependency
Added by François ARMAND over 3 years ago.
Updated over 3 years ago.
Description
We have a CVE (CVE-2021-27568). We should not be exposed to it, since we correctly handle exceptions (that one included) in rudder, but it makes our CI complains.
- Status changed from New to In progress
- Assignee set to François ARMAND
- Status changed from In progress to Pending technical review
- Assignee changed from François ARMAND to Alexis Mousset
- Pull Request set to https://github.com/Normation/rudder/pull/3714
- Status changed from Pending technical review to Pending release
- Fix check changed from To do to Checked
- Status changed from Pending release to Released
This bug has been fixed in Rudder 6.1.15 and 6.2.9 which were released today.
Also available in: Atom
PDF