Skip to content

CVE in ag-auth dependency #46

@inaz0

Description

@inaz0

Hi,

I'll seen you are using the ag-auth package in your code but recently an Security Vulenrabilities was found in jsonwebtoken used by ag-auth.

But ag-auth was not upgrade since 4 years...

Did you plan to remove ag-auth and replace it by non obsolete package ?

Detail of CVE : https://thehackernews.com/2023/01/critical-security-flaw-found-in.html

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions