| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
|
This is updating the advisory to reflect that eventsource v1.1.1 did not actually drop the "original" dependency, hence it is still vulnerable. |
Sorry, something went wrong.
|
According to the thread provided in the community contribution and the resulting pull request, version 1.1.1 is vulnerable to a different and independently fixable issue that would need its own advisory and is outside the scope of this GHSA. You can encourage the maintainer to publish a separate advisory to clear up confusion between the two issues. |
Sorry, something went wrong.
| Back | FazBrowse Home | New Git URL |
Updates