Skip to content

Conversation

@aqib-deriv
Copy link
Contributor

@aqib-deriv aqib-deriv commented Dec 2, 2024

https://app.clickup.com/t/20696747/CICD-1165

Summary:

mako is vulnerable to Regular Expression Denial of Service #1

Steps to fix:

Manually changed the lock file then executed the command pipenv install mako==1.2.2 and then copied the hash from the new package and replaced the hash with the manually changed one

@mukesh-deriv mukesh-deriv merged commit 7e8dd0f into deriv-com:master Dec 3, 2024
17 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants