Skip to content

chore: update aws-sdk-php and dompdf to address security vulnerabilities#20480

Open
malekbig wants to merge 1 commit intoakeneo:masterfrom
malekbig:fix/security-aws-sdk-php-dompdf
Open

chore: update aws-sdk-php and dompdf to address security vulnerabilities#20480
malekbig wants to merge 1 commit intoakeneo:masterfrom
malekbig:fix/security-aws-sdk-php-dompdf

Conversation

@malekbig
Copy link
Copy Markdown

@malekbig malekbig commented Oct 3, 2024

  • Fixed CVE-2023-51651: Potential URI resolution path traversal in aws/aws-sdk-php
  • Fixed CVE-2023-50262: Denial of service vulnerability in dompdf when parsing SVG images

Upgraded both dependencies to secure versions.

Description (for Contributor and Core Developer)

Definition Of Done (for Core Developer only)

  • Tests
  • Migration & Installer
  • PM Validation (Story)
  • Changelog (maintenance bug fixes)
  • Tech Doc

- Fixed CVE-2023-51651: Potential URI resolution path traversal in aws/aws-sdk-php
- Fixed CVE-2023-50262: Denial of service vulnerability in dompdf when parsing SVG images

Upgraded both dependencies to secure versions.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant