postmanlabs / newman

Newman is a command-line collection runner for Postman
https://www.postman.com
Apache License 2.0
6.78k stars 1.15k forks source link

critical vulnerabilities from newman postman #3236

Open priyamghosh39 opened 1 month ago

priyamghosh39 commented 1 month ago

Hi,

we are being scanned at our organization and we encounter many critical vulnerabilities with postman newman like CVE-2023-42282 for example reason being the common-docker image we are using is not upgraded since long. Can we have it updated to avoid these vulnerabilities. Type and package info I can see is nodejs. Any help?