Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(security): CVE-2021-28834 #8680

Merged
merged 2 commits into from
May 18, 2021
Merged

fix(security): CVE-2021-28834 #8680

merged 2 commits into from
May 18, 2021

Conversation

DirtyF
Copy link
Member

@DirtyF DirtyF commented May 17, 2021

We should force Kramdown to >=2.3.1 to avoid GHSA-52p9-v744-mwjj

@DirtyF DirtyF requested review from a team, parkr and ashmaroli and removed request for a team May 17, 2021 21:51
@github-actions

This comment has been minimized.

jekyll.gemspec Outdated Show resolved Hide resolved
Co-authored-by: Parker Moore <237985+parkr@users.noreply.github.com>
@DirtyF
Copy link
Member Author

DirtyF commented May 18, 2021

@jekyll: merge +fix

@jekyllbot jekyllbot merged commit 42dacc1 into master May 18, 2021
@jekyllbot jekyllbot added the bug label May 18, 2021
@jekyllbot jekyllbot deleted the fix/CVE-2021-28834 branch May 18, 2021 06:31
jekyllbot added a commit that referenced this pull request May 18, 2021
@DirtyF DirtyF removed the request for review from ashmaroli May 18, 2021 06:32
github-actions bot pushed a commit that referenced this pull request May 18, 2021
Frank Taillandier: fix(security):  CVE-2021-28834 (#8680)

Merge pull request 8680
@jekyll jekyll locked and limited conversation to collaborators May 18, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

4 participants