You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hey. We’ve been using metosion/ring-swagger-ui and recently we’ve got this CVE in our dependency scans https://nvd.nist.gov/vuln/detail/CVE-2024-45801. Turns out this vuln is present via swagger-ui, since 16.9.2024:
One or more dependencies were identified with vulnerabilities that have a CVSS score greater than or equal to '5.0':
****.standalone.jar: swagger-ui-bundle.js: CVE-2024-45801(10.0)
****.standalone.jar: swagger-ui-es-bundle.js: CVE-2024-45801(10.0)
I think that you’ll need to update to the latest swagger-ui for this one.
The text was updated successfully, but these errors were encountered:
From https://clojurians.slack.com/archives/C059F2KE7PD/p1726834353289909:
The text was updated successfully, but these errors were encountered: