hashicorp / boundary-ui

Monorepo for Boundary UIs and addons.
http://boundary-ui.vercel.app
Other
87 stars 28 forks source link

Icu 14208 vulnerabilities in boundary UI enterprise lodash template 4 5 0 in yarn lock #2485

Closed cameronperera closed 2 weeks ago

cameronperera commented 2 weeks ago

Description

This is a patch for lodash.template that is vulnerable to Command Injection via the template function. There is a second patch for the electron-app project as well.

:tickets: Jira ticket 🤖 Dependabot Alert 🤖 Electron Dependabot Alert

Screenshots (if appropriate)

How to Test

Checklist

vercel[bot] commented 2 weeks ago

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
boundary-ui ✅ Ready (Inspect) Visit Preview 💬 Add feedback Sep 14, 2024 3:33am
boundary-ui-desktop ✅ Ready (Inspect) Visit Preview 💬 Add feedback Sep 14, 2024 3:33am