The Wayback Machine - https://web.archive.org/web/20220325075227/https://github.com/strapi/strapi/issues/12879
Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[V3] Fix CVE-2022-0764 #12879

Open
timyboy12345 opened this issue Mar 17, 2022 · 0 comments
Open

[V3] Fix CVE-2022-0764 #12879

timyboy12345 opened this issue Mar 17, 2022 · 0 comments
Assignees
Labels
good first issue issue: bug issue: security severity: low source: core:strapi status: confirmed

Comments

@timyboy12345
Copy link

@timyboy12345 timyboy12345 commented Mar 17, 2022

Bug report

Describe the bug

There is a security vulnerability in Strapi that prevents our deployment pipeline from running. There is already a fix implemented for v4.x, but upgrading is not on our short-term road map for now. It seems like the fix from v4 can be copied to v3 1 on 1, but since I've never contributed to this repository I was hoping there was someone willing to back-port the fix to v3.

Other information

@derrickmehaffy derrickmehaffy added issue: bug severity: low good first issue status: confirmed issue: security source: core:strapi labels Mar 21, 2022
@derrickmehaffy derrickmehaffy added this to To be reviewed (Open) in Developer Experience via automation Mar 21, 2022
@derrickmehaffy derrickmehaffy removed this from To be reviewed (Open) in Developer Experience Mar 21, 2022
@markkaylor markkaylor self-assigned this Mar 21, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
good first issue issue: bug issue: security severity: low source: core:strapi status: confirmed
3 participants