elierotenberg / fastify-zod

Zod integration with Fastify
MIT License
212 stars 19 forks source link

fastify/swagger-ui vulnerabilities #52

Open VMBindraban opened 2 weeks ago

VMBindraban commented 2 weeks ago

fastify-zod@1.4.0 is using @fastify/swagger-ui@1.10.2, which has 2 vulnerabilities.

inflight - Missing Release of Resource after Effective Lifetime Introduced through: fastify-zod@1.4.0 › @fastify/swagger-ui@1.10.2 › @fastify/static@6.12.0 › glob@8.1.0 › inflight@1.0.6 https://security.snyk.io/vuln/SNYK-JS-INFLIGHT-6095116

@fastify/swagger-ui Information Exposure Introduced through: fastify-zod@1.4.0 › @fastify/swagger-ui@1.10.2 https://security.snyk.io/vuln/SNYK-JS-FASTIFYSWAGGERUI-6157561

Can you update the @fastify/swagger-ui package? Latest version is 5.10.