MEDIUM5.7
GHSA-x92g-49gh-63qm
Budibase Improper Control of Dynamically-Managed Code Resources vulnerability
Quick fix
GHSA-x92g-49gh-63qm — @budibase/worker: upgrade to the fixed version with the command below.
npm install @budibase/worker@1.3.20Details
Improper Control of Dynamically-Managed Code Resources in GitHub repository budibase/budibase prior to 1.3.20.
Are you affected?
Enter the version of the package you're using.
Affected packages
References
- https://nvd.nist.gov/vuln/detail/CVE-2022-3225[ADVISORY]
- https://github.com/budibase/budibase/commit/d35864be0854216693a01307f81ffcabf6d549df[WEB]
- https://github.com/Budibase/budibase/releases/tag/v1.3.20[WEB]
- https://github.com/budibase/budibase[PACKAGE]
- https://huntr.dev/bounties/a13a56b7-04da-4560-b8ec-0d637d12a245[WEB]