Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk: MED] Regular Expression Denial of Service (ReDoS) (due 04/04/2021) #4362

Closed
1 task
Tracked by #137
fec-jli opened this issue Feb 3, 2021 · 0 comments · Fixed by #4460
Closed
1 task
Tracked by #137

[Snyk: MED] Regular Expression Denial of Service (ReDoS) (due 04/04/2021) #4362

fec-jli opened this issue Feb 3, 2021 · 0 comments · Fixed by #4460
Assignees
Milestone

Comments

@fec-jli
Copy link
Contributor

fec-jli commented Feb 3, 2021

Regular Expression Denial of Service (ReDoS)
https://app.snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994

Remediation : Upgrade jinja2 to version 2.11.3 or higher.

Completion criteria:

  • jinja2 is upgraded to the version that eliminates the vulnerability.
@fec-jli fec-jli added Needs refinement Security: moderate Remediate within 60 days labels Feb 3, 2021
@JonellaCulmer JonellaCulmer added this to the Sprint 14.3 milestone Feb 3, 2021
@lbeaufort lbeaufort changed the title Snyk-MEDIUM: Regular Expression Denial of Service (ReDoS) (due 04/04/2021) [Snyk: MED] Regular Expression Denial of Service (ReDoS) (due 04/04/2021) Feb 11, 2021
@lbeaufort lbeaufort modified the milestones: Sprint 14.3, Sprint 14.2 Feb 11, 2021
@rfultz rfultz mentioned this issue Mar 9, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

4 participants