GFlisch / Arc4u.Guidance.Doc

Other
5 stars 1 forks source link

YARP Denial of Service Vulnerability #191

Closed David-vh closed 1 year ago

David-vh commented 1 year ago

When generating a new project the yarp version that is used (1.1.1) contains a Denial of Service Vulnerability see: https://github.com/microsoft/reverse-proxy/security/advisories/GHSA-8xc6-g8xw-h2c4

Upgrade yarp version to 1.1.2 to solve vulnerability

HaGGi13 commented 1 year ago

The new version will ship version 2.0.1.

We have to keep in mind that this is not a seamless update coming from 1.x.x.