[Bug]: CVE-2024-21540 jest-runner using a vulnerable library source-map-support-0.5.13 #15380
Open
Description
opened on Nov 14, 2024
Version
29.7.0
Steps to reproduce
Installing latest jest version introduces high vulnerability CVE-2024-21540
Expected behavior
Vulnerability score from high to below high threshold
Actual behavior
Vulnerability scan showing library with Path traversal issuehere
Additional context
No response
Environment
System:
OS: macOS 15.0.1
CPU: (10) arm64 Apple M1 Pro
Binaries:
Node: 22.9.0 - ~/.nvm/versions/node/v22.9.0/bin/node
npm: 10.8.3 - ~/.nvm/versions/node/v22.9.0/bin/npm
npmPackages:
jest: 29.7.0 => 29.7.0
Activity