-
Notifications
You must be signed in to change notification settings - Fork 357
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Security Issue in UI Classic node package codemirror #7527
Comments
Any update on this one. Thank you. |
@himdel any update on this one? Thank you. |
We can probably ignore this, we're running codemirror in |
Follow up for whoever ends up doing this...
|
@himdel Can we ignore this issue or do you plan on fixing this issue. If you believe this security issue will not affect ManageIQ then I can close this issue. Thank you. |
Well, there is no security issue, if a user pastes malicious javascript on a I do think we should be keeping our dependencies up to date, so I would not necessarily close this, fixing this one might be a good start for the new UI team, but there's no urgency :). |
Okay thank you. |
This issue has been automatically marked as stale because it has not been updated for at least 3 months. If you can still reproduce this issue on the current release or on Thank you for all your contributions! More information about the ManageIQ triage process can be found in the triage process documentation. |
Affected component: UI Classic
Current Version: 5.47.0
Remediation: 5.58.2 or higher
Link: https://nvd.nist.gov/vuln/detail/CVE-2020-7760
CVE: CVE-2020-7760
The text was updated successfully, but these errors were encountered: