Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix(keychain-vault-server): address CVEs: CVE-2021-22946, CVE-2022-1304, CVE-2018-12886, CVE-2022-29458, CVE-2019-3843, CVE-2019-3844, CVE-2022-29458, CVE-2020-16156 #2565

Closed

Commits on Jul 25, 2023

  1. fix(keychain-vault-server): address CVEs: CVE-2021-22946, CVE-2022-1304

    …, CVE-2018-12886, CVE-2022-29458, CVE-2019-3843, CVE-2019-3844, CVE-2022-29458, CVE-2020-16156
    
    fixes: hyperledger-cacti#2058
    
    trivy scanner verified that the vulnerabilities in keychain-vault-server
    is not appearing anymore. CVEs are the following
    - CVE-2021-22946
    - CVE-2022-1304
    - CVE-2018-12886
    - CVE-2022-29458
    - CVE-2019-3843
    - CVE-2019-3844
    - CVE-2022-29458 (base)
    - CVE-2022-29458 (bin)
    - CVE-2020-16156
    
    No changes was needed to be merged.
    
    Signed-off-by: ruzell22 <ruzell.vince.aquino@accenture.com>
    ruzell22 committed Jul 25, 2023
    Configuration menu
    Copy the full SHA
    05fb935 View commit details
    Browse the repository at this point in the history