wildfish / django-dashboards

Other
61 stars 4 forks source link

Fix plotly.js critical vulnerability #29

Open Janani-Priya-S-S opened 1 month ago

Janani-Priya-S-S commented 1 month ago

A critical vulnerability related to plotly.js lib has been reported and it needs to be fixed.

ID: CVE-2023-46308 Score: 9.8 Source: {"url":"https://www.mend.io/vulnerability-database/CVE-2023-46308"} Severity: critical Library: plotly.js 2.12.1 Description: In Plotly plotly.js before 2.25.2, plot API calls have a risk of proto being polluted in expandObjectPaths or nestedProperty.