Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update Microsoft Graph PowerShell SDK dependencies #2840

Closed
timayabi2020 opened this issue Jul 9, 2024 · 0 comments · Fixed by #2835
Closed

Update Microsoft Graph PowerShell SDK dependencies #2840

timayabi2020 opened this issue Jul 9, 2024 · 0 comments · Fixed by #2835
Assignees
Labels
type:security Security, or privacy issue

Comments

@timayabi2020
Copy link
Contributor

timayabi2020 commented Jul 9, 2024

Describe the bug

Some dependencies needs to be updated for compliance purposes as reported below

  1. Microsoft Security Advisory CVE-2023-29331: .NET Denial of Service vulnerability dotnet/announcements#257
  2. Microsoft Security Advisory CVE-2024-21319: .NET Denial of Service Vulnerability dotnet/announcements#290
  3. Consider Removal of Moq due to Privacy and data exfiltration Issues msgraph-sdk-dotnet#2090

The dependencies include:

  1. Moq
  2. Microsoft.Graph.Core
  3. Microsoft.PowerShell.SDK

Expected behavior

NA

How to reproduce

NA

SDK Version

No response

Latest version known to work for scenario above?

No response

Known Workarounds

No response

Debug output

Click to expand log ```
</details>


### Configuration

_No response_

### Other information

_No response_
@timayabi2020 timayabi2020 added status:waiting-for-triage An issue that is yet to be reviewed or assigned type:bug A broken experience labels Jul 9, 2024
@timayabi2020 timayabi2020 self-assigned this Jul 9, 2024
@timayabi2020 timayabi2020 added type:security Security, or privacy issue and removed status:waiting-for-triage An issue that is yet to be reviewed or assigned type:bug A broken experience labels Jul 9, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type:security Security, or privacy issue
Projects
None yet
1 participant