Closed auslin-aot closed 4 months ago
JIRA: Issue Type: BUG/ FEATURE
Github vulnerability fix
Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter Package- jinja2 Affected versions< 3.1.3 Patched version - 3.1.3
no Fix version available for Minerva timing attack on P-256 in python-ecdsa
Issue Tracking
JIRA: Issue Type: BUG/ FEATURE
Changes
Github vulnerability fix![image](https://github.com/AOT-Technologies/forms-flow-ai/assets/99173163/5f5f6f9d-4677-4099-9212-26a98eaacb64)
Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter Package- jinja2 Affected versions< 3.1.3 Patched version - 3.1.3
no Fix version available for Minerva timing attack on P-256 in python-ecdsa![image](https://github.com/AOT-Technologies/forms-flow-ai/assets/99173163/a61a01ca-45c4-447c-80d6-85b3dc0adffc)