Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

CVE-2022-2564 vulnerability for version 5.x #12297

Merged

Conversation

shubanker
Copy link
Contributor

@shubanker shubanker commented Aug 19, 2022

Fix #12281
patch for prototype pollution vulnerability CVE-2022-2564 The CVS score is 7.0.
This patch is already available in version 6.4.6 , downporting it for 5.x

Copy link
Collaborator

@vkarpov15 vkarpov15 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks 👍 we'll work on fixing the build in 5.x branch, doesn't look like the build issue has anything to do with this PR.

@vkarpov15 vkarpov15 added this to the 5.13.15 milestone Aug 21, 2022
@vkarpov15 vkarpov15 merged commit 99b4189 into Automattic:5.x Aug 21, 2022
@vkarpov15 vkarpov15 mentioned this pull request Aug 21, 2022
@shubanker shubanker deleted the issue/prototype-pollution-5.x-patch branch August 22, 2022 01:41
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants