Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Actualizar version de Knex #376

Closed
cazapatamar opened this issue Jan 12, 2024 · 1 comment · Fixed by #379
Closed

Actualizar version de Knex #376

cazapatamar opened this issue Jan 12, 2024 · 1 comment · Fixed by #379
Assignees

Comments

@cazapatamar
Copy link
Member

Descripción:

Luego de ejecurtar ´yarn npm audit --all´ se encuentra que knex debe ser actualizada ya que existen vulnerabilidades en la version actual de biotablero.

knex: 1.0.7
├─ Issue: Knex.js has a limited SQL injection vulnerability
├─ URL: GHSA-4jv9-3563-23j3
├─ Severity: high
├─ Vulnerable Versions: <2.4.0
├─ Patched Versions: >=2.4.0
├─ Via: knex

Resultado:

knex en la version >=2.4.0

Consideraciones:

Realizar multiples pruebas sobre todos los endpoints en todos los modulos

@cazapatamar
Copy link
Member Author

Hey team! Please add your planning poker estimate with Zenhub @hacheG @ManuelStardust

This was linked to pull requests Jan 17, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants