Tuleap Community Edition development and releases are no longer public. You have until September 30th to download packages and sources in Tuleap project. You can contact the team if you need further assistance.

    •  
      request #31574 Ignore vulnerability in a transitive dep of angular-gettext-cli/angular-gettext-loader
    Infos
    #31574
    Thomas Gerbet (tgerbet)
    2023-04-17 14:38
    2023-04-17 12:06
    33215
    Details
    Ignore vulnerability in a transitive dep of angular-gettext-cli/angular-gettext-loader

    CVE-2021-3803 is reported due to the usage of nth-check in the dependency trees of the Angular gettext dev/build tooling. The ReDoS issue cannot really be triggered and we have no easy way to fix it.

    Dev tools
    Empty
    Empty
    • [ ] enhancement
    • [ ] internal improvement
    Empty
    Stage
    Thomas Gerbet (tgerbet)
    Closed
    2023-04-17
    Attachments
    Empty
    References
    Referenced by request #31574

    Follow-ups