Skip to content

Security Vulnerability CVE-2021-23406 inside /usr/lib/code-server/vendor/modules/code-oss-dev/yarn.lock #4279

Closed
@jsjoeio

Description

@jsjoeio

Mentioned vulnerability still exists in code-oss-dev . /usr/lib/code-server/vendor/modules/code-oss-dev/yarn.lock still has the 4.2.0 version of pac-resolver.

— Manohar Joshi

Reported to security@coder.com over email.

Metadata

Metadata

Assignees

Labels

dependenciesPull requests that update a dependency filesecuritySecurity related

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions