Skip to content

Conversation

@chengfang
Copy link
Collaborator

This PR fixes CVE-2024-45296 by upgrading the indirect dependency react-router/path-to-regexp from 1.8.0 to 1.9.0.

Cherry-pick from the same fix in main: #57

…pgrading path-to-regexp from 1.8.0 to 1.9.0

Signed-off-by: Cheng Fang <cfang@redhat.com>
@openshift-ci openshift-ci bot requested review from saumeya and wtam2018 September 25, 2024 19:38
Copy link
Collaborator

@keithchong keithchong left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@keithchong keithchong merged commit b02df9e into redhat-developer:v1.12 Sep 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants