psi-4ward / psitransfer

Simple open source self-hosted file sharing solution.
BSD 2-Clause "Simplified" License
1.5k stars 217 forks source link

update crypto-js to version 4.2.0 #296

Closed hhaggenn closed 8 months ago

hhaggenn commented 10 months ago

Please update crypto-js to version 4.2.0 CVE-2023-46233

psi-4ward commented 10 months ago

https://github.com/psi-4ward/psitransfer/blob/master/lib/endpoints.js#L9

Looks like we are not affected

leonmeijer commented 10 months ago

Please do update, because this crypto-js library is being blocked by company policies.

psi-4ward commented 8 months ago

https://github.com/psi-4ward/psitransfer/commit/fdc7f73c44867ca2131a2d5c5b555c2ef94c2ab7