Skip to content

Security - 0.0.2 version has high vulnerabilities of CVE-2022-25845, CVE-2023-34981, and GHSA-xpw8-rcwv-8f8p #181

@rachelsu1

Description

@rachelsu1

Describe the bug
Security - 0.0.2 version has high vulnerabilities of CVE-2022-25845, CVE-2023-34981, and GHSA-xpw8-rcwv-8f8p.

To Reproduce

  1. CVE-2022-25845: com.alibaba:fastjson, see GHSA-pv7h-hx5h-mgfj.
  2. CVE-2023-34981: org.apache.tomcat.embed:tomcat-embed-core, see GHSA-mppv-79ch-vw6q.
  3. GHSA-xpw8-rcwv-8f8p: io.netty:netty-codec-http2, see GHSA-xpw8-rcwv-8f8p.

Expected behavior
They should be fixed.

Screenshots
n/a

Desktop (please complete the following information):
n/a

Smartphone (please complete the following information):
n/a

Additional context
n/a

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions