Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Meta] Current CVE-2018-19183 / GitHub Security Warning is a non-issue #395

Closed
holgerd77 opened this issue Nov 22, 2018 · 1 comment
Closed

Comments

@holgerd77
Copy link
Member

For information: GitHub is currently giving a security alert on version v2.4.0 of the library. This was triggered by a CVE-2018-19183 (Common Vulnerabilities and Exposures] filed on the NVD (US National Vulnerability Database).

The CVE is based on this issue #386 open on the library. After first analysis we can very safely say that this is a non-issue and you can safely ignore the warning.

Side note: if you are from NIST or GitHub Security team and have further questions, please get in touch!

@s1na
Copy link
Contributor

s1na commented Mar 13, 2019

Closing this since it's a non-issue :) feel free to open it again if something comes up.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants