[Git][security-tracker-team/security-tracker][master] new mermaid issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jun 29 14:43:56 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ff34566c by Moritz Muehlenhoff at 2022-06-29T15:40:06+02:00
new mermaid issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9451,7 +9451,10 @@ CVE-2022-31110
 CVE-2022-31109
 	RESERVED
 CVE-2022-31108 (Mermaid is a JavaScript based diagramming and charting tool that uses  ...)
-	TODO: check
+	- node-mermaid <unfixed>
+	[bullseye] - node-mermaid <no-dsa> (Minor issue)
+	NOTE: https://github.com/mermaid-js/mermaid/security/advisories/GHSA-x3vm-38hw-55wf
+	NOTE: https://github.com/mermaid-js/mermaid/commit/0ae1bdb61adff1cd485caff8c62ec6b8ac57b225
 CVE-2022-31107
 	RESERVED
 CVE-2022-31106 (Underscore.deep is a collection of Underscore mixins that operate on n ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ff34566c0ab933b50b26aa7490ebd56c387c3ac8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ff34566c0ab933b50b26aa7490ebd56c387c3ac8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220629/b34b8994/attachment.htm>


More information about the debian-security-tracker-commits mailing list