P
pratik ranjan
@pratik ranjan
Posts
-
Vulnerability due to Version fixation of third parties libraries -
Vulnerability due to Version fixation of third parties librariesThanks baris , but my question was , we are running latest nodebb , but the async version which runs in the latest version has some bugs, now the remediation that we got offered from scanning tool is to upgrade the async version ,, but won't that mean if we do changes in an open source code, we need to make the code public ? also explicitly upgrading libraries might break the application ..
-
Vulnerability due to Version fixation of third parties librariesHow do we Remediate a vulnerability where the solution is to upgrade a dependent library( async) for nodebb,, as we cant upgrade explicitly