Skip to content

[GHSA-9c47-m6qq-7p4h] Prototype Pollution in JSON5 via Parse Method - #1542

Closed
jakebailey wants to merge 1 commit into
mainfrom
jakebailey-GHSA-9c47-m6qq-7p4h
Closed

jakebailey wants to merge 1 commit into
mainfrom
jakebailey-GHSA-9c47-m6qq-7p4h

Conversation

@jakebailey

Copy link
Copy Markdown

Updates

  • Affected products

Comments
This fix has also been backported to v1: https://github.com/json5/json5/blob/v1/CHANGELOG.md#v102-code-diff

@github

github commented Dec 30, 2022

Copy link
Copy Markdown
Collaborator

Hi there @jdgregson and @jordanbtucker! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository.

This change will be reviewed by our highly-trained Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory

@jakebailey

Copy link
Copy Markdown
Author

Nevermind, #1541 already exists.

@jakebailey jakebailey closed this Dec 30, 2022
@jordanbtucker

Copy link
Copy Markdown

@jakebailey Thanks for updating this, but I've already opened #1541 which also fixes a typo, so I'd like to close this one in favor of #1541

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants