Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

JSON-SCHEMA Vulnerability #37

Closed
joelrichardvitrana opened this issue May 3, 2023 · 1 comment
Closed

JSON-SCHEMA Vulnerability #37

joelrichardvitrana opened this issue May 3, 2023 · 1 comment

Comments

@joelrichardvitrana
Copy link

Currently my "jsprism" is of version "4.17.1" and it requires a package - "json-schema" of its old version "0.2.3". This version of json-schema currently has a critical vulnerability (CVE-2021-3918).

Is there any version of "jsprism" which requires the a stable "json-schema" version which does not have a vulnerability. If so, could you please let us know?

@travispaul
Copy link

travispaul commented May 3, 2023

Hi @joelrichardvitrana,

This repository is for the npm module "jsprim" which has no version "4.17.1", perhaps you've confused this repository with another?

The latest published version of this module uses an updated version of json-schema (see #33)

I'm going to go ahead and close this issue but feel free to reopen if necessary.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants