Skip to content

Bump moment minor version to mitigate CVE-2016-4055#1067

Merged
ssalinas merged 2 commits intomasterfrom
update_moment
Jul 19, 2016
Merged

Bump moment minor version to mitigate CVE-2016-4055#1067
ssalinas merged 2 commits intomasterfrom
update_moment

Conversation

@kwm4385
Copy link
Copy Markdown
Contributor

@kwm4385 kwm4385 commented Jun 7, 2016

Ran a dependency analyzer and saw moment had a DDOS vulnerability via regexes. Bumped the minor version with the fix. No breaking changes that I'm aware of.
@wolfd @tpetr

@tpetr tpetr added the UI label Jul 15, 2016
@ssalinas
Copy link
Copy Markdown
Contributor

👍

@ssalinas ssalinas merged commit b7cf517 into master Jul 19, 2016
@ssalinas ssalinas deleted the update_moment branch July 19, 2016 16:27
@ssalinas ssalinas added this to the 0.9.0 milestone Jul 29, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants