microsoft / vstest

Visual Studio Test Platform is the runner and engine that powers test explorer and vstest.console.
MIT License
898 stars 323 forks source link

Newtonsoft Vulnerabilty, need to upgrade to 13.0.1 #3910

Closed david-hoekman-ms closed 2 years ago

david-hoekman-ms commented 2 years ago

There is a vulnerability with Newtonsoft.Json V 9.0.1 which this uses.

Can we please get an upgrade to Newtonsoft V 13.0.1 in the nuget package with the next release?

Evangelink commented 2 years ago

Hi @david-hoekman-ms,

This was fixed in #3815, it's already available as preview package and will be available in 17.4.