Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2024-24750 for undici < 6.6.1 #1967

Open
yshi-parasoft opened this issue Feb 25, 2025 · 2 comments
Open

CVE-2024-24750 for undici < 6.6.1 #1967

yshi-parasoft opened this issue Feb 25, 2025 · 2 comments

Comments

@yshi-parasoft
Copy link

CVE-2024-24750
Please update to a patch version that does not have this vulnerability.

@MikeMcC399
Copy link

@yshi-parasoft

GHSA-9f24-jqhm-jfcw shows vulnerability for

Image

so I don't believe this is currently the case for this repo.

@yshi-parasoft
Copy link
Author

yshi-parasoft commented Feb 26, 2025

@MikeMcC399 I see. I am using Dependency Track to analyze vulnerabilities in my project and got the following information:
Image
This made me mistakenly think that version 5.28.5 also had a vulnerability. It seems that I should suppress this violation in my project in dependency track.
I think we can close this issue.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants