Topic: git-tags-remote critical issue

jeffreykthomas premium asked 3 years ago


Expected behavior

No vulnerabilities

Actual behavior

The git-tags-remote dependency of vue-cli-plugin-mdb has a critical issue, with command injection being the potential issue.

Is there any workaround for this?

https://www.npmjs.com/advisories/1517


Magdalena Dembna staff commented 3 years ago

Thank you for reporting this issue, I will add a task to fix it with high priority. Best regards, Magdalena


jeffreykthomas premium commented 3 years ago

Any progress on this fix?


Magdalena Dembna staff commented 3 years ago

Not yet, we have not released next MDB Vue version since the report.


Eric Linxie free commented 3 years ago

Hello? Any updates on this issue? I ran into this issue too


Mikołaj Smoleński staff commented 3 years ago

We have not released next MDB Vue version since the report, still. It's on our list and we remember about the issue. Best regards



Please insert min. 20 characters.

FREE CONSULTATION

Hire our experts to build a dedicated project. We'll analyze your business requirements, for free.

Status

Opened

Specification of the issue

  • ForumUser: Premium
  • Premium support: Yes
  • Technology: MDB Vue
  • MDB Version: 6.7.1
  • Device: all
  • Browser: all
  • OS: all
  • Provided sample code: No
  • Provided link: Yes
Tags