git-tags-remote critical issue


Topic: git-tags-remote critical issue

jeffreykthomas pro premium asked 4 years ago

Expected behavior

No vulnerabilities

Actual behavior

The git-tags-remote dependency of vue-cli-plugin-mdb has a critical issue, with command injection being the potential issue.

Is there any workaround for this?

https://www.npmjs.com/advisories/1517


Magdalena Dembna staff premium commented 4 years ago

Thank you for reporting this issue, I will add a task to fix it with high priority. Best regards, Magdalena


jeffreykthomas pro premium commented 4 years ago

Any progress on this fix?


Magdalena Dembna staff premium commented 4 years ago

Not yet, we have not released next MDB Vue version since the report.


Eric Linxie commented 4 years ago

Hello? Any updates on this issue? I ran into this issue too


Mikołaj Smoleński staff commented 4 years ago

We have not released next MDB Vue version since the report, still. It's on our list and we remember about the issue. Best regards


Please insert min. 20 characters.

FREE CONSULTATION

Hire our experts to build a dedicated project. We'll analyze your business requirements, for free.

Status

Open

Specification of the issue
  • User: Pro
  • Premium support: Yes
  • Technology: MDB Vue
  • MDB Version: 6.7.1
  • Device: all
  • Browser: all
  • OS: all
  • Provided sample code: No
  • Provided link: Yes
Tags
npm