File tree Expand file tree Collapse file tree 1 file changed +32
-9
lines changed
advisories/github-reviewed/2021/05/GHSA-35jh-r3h4-6jhm Expand file tree Collapse file tree 1 file changed +32
-9
lines changed Original file line number Diff line number Diff line change 1
1
{
2
2
"schema_version" : " 1.2.0" ,
3
3
"id" : " GHSA-35jh-r3h4-6jhm" ,
4
- "modified" : " 2022-02-08T21:35:09Z " ,
4
+ "modified" : " 2022-02-28T18:01:36Z " ,
5
5
"published" : " 2021-05-06T16:05:51Z" ,
6
6
"aliases" : [
7
7
" CVE-2021-23337"
33
33
]
34
34
}
35
35
]
36
+ },
37
+ {
38
+ "package" : {
39
+ "ecosystem" : " npm" ,
40
+ "name" : " lodash-es"
41
+ },
42
+ "ranges" : [
43
+ {
44
+ "type" : " ECOSYSTEM" ,
45
+ "events" : [
46
+ {
47
+ "introduced" : " 0"
48
+ },
49
+ {
50
+ "fixed" : " 4.17.21"
51
+ }
52
+ ]
53
+ }
54
+ ]
36
55
}
37
56
],
38
57
"references" : [
46
65
},
47
66
{
48
67
"type" : " WEB" ,
49
- "url" : " https://github. com/lodash/lodash/blob/ddfd9b11a0126db2302cb70ec9973b66baec0975/lodash.js#L14851 "
68
+ "url" : " https://security.netapp. com/advisory/ntap-20210312-0006/ "
50
69
},
51
70
{
52
71
"type" : " WEB" ,
53
- "url" : " https://github.com/lodash/lodash/blob/ddfd9b11a0126db2302cb70ec9973b66baec0975/lodash.js%23L14851 "
72
+ "url" : " https://snyk.io/vuln/SNYK-JS-LODASH-1040724 "
54
73
},
55
74
{
56
75
"type" : " WEB" ,
57
- "url" : " https://security.netapp.com/advisory/ntap-20210312-0006/"
76
+ "url" : " https://github.com/lodash/lodash/blob/ddfd9b11a0126db2302cb70ec9973b66baec0975/lodash.js#L14851"
77
+ },
78
+ {
79
+ "type" : " WEB" ,
80
+ "url" : " https://github.com/lodash/lodash/blob/ddfd9b11a0126db2302cb70ec9973b66baec0975/lodash.js%23L14851"
58
81
},
59
82
{
60
83
"type" : " WEB" ,
78
101
},
79
102
{
80
103
"type" : " WEB" ,
81
- "url" : " https://snyk.io/vuln/SNYK-JS-LODASH-1040724 "
104
+ "url" : " https://www.oracle.com//security-alerts/cpujul2021.html "
82
105
},
83
106
{
84
107
"type" : " WEB" ,
85
- "url" : " https://www.oracle.com// security-alerts/cpujul2021 .html"
108
+ "url" : " https://www.oracle.com/security-alerts/cpuoct2021 .html"
86
109
},
87
110
{
88
111
"type" : " WEB" ,
89
112
"url" : " https://www.oracle.com/security-alerts/cpujan2022.html"
90
113
},
91
114
{
92
115
"type" : " WEB" ,
93
- "url" : " https://www.oracle. com/security-alerts/cpuoct2021.html "
116
+ "url" : " https://github. com/lodash/lodash/commit/11eb817cdfacf56c02d7005cbe520ffbeb0fe59a "
94
117
},
95
118
{
96
119
"type" : " PACKAGE" ,
101
124
"cwe_ids" : [
102
125
" CWE-77"
103
126
],
104
- "severity" : " HIGH " ,
105
- "github_reviewed" : true
127
+ "severity" : " high " ,
128
+ "github_reviewed" : null
106
129
}
107
130
}
You can’t perform that action at this time.
0 commit comments