-
Notifications
You must be signed in to change notification settings - Fork 4.7k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Address CVE-2020-7690 #2862
Comments
I must be turning blind... see #2795 now. |
@ikornienko do you happen to know how we can tell the site that this vulnerability was fixed with 2.0.0? |
I'm not quite sure NVD specifies this kind of data about when the issue was fixed. But let me double check and come back to you. I did see that in Snyk Vuln DB it specifies that the remediation is to upgrade to |
@HackbrettXXX my awesome colleagues from StackRox helped to get the following info:
|
Thanks for the information. I submitted an update request. |
Sorry if it's a duplicate, wasn't able to find anything related to CVE-2020-7690 among issues and PRs.
Unfortunately, I don't have all the details about this vulnerability, besides knowing that it's being identified by vuln scanners that discover
jspdf
as a dependency.Does anyone have more insights into the issue? What are the plans to address it?
The text was updated successfully, but these errors were encountered: