Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[2.8 backport] Bump joi to v14 to avoid the possibility of prototype poisoning in a nested dependency #4207

Merged
merged 1 commit into from
Jun 16, 2023

Conversation

ananzh
Copy link
Member

@ananzh ananzh commented Jun 1, 2023

Backport PR
#3952

Check List

  • All tests pass
    • yarn test:jest
    • yarn test:jest_integration
    • yarn test:ftr
  • New functionality includes testing.
  • New functionality has been documented.
  • Update CHANGELOG.md
  • Commits are signed per the DCO using --signoff

…e poisoning in a nested dependency

Backport PR
opensearch-project#3952

Signed-off-by: Miki <miki@amazon.com>
@joshuarrrr joshuarrrr added the not in release PRs backported to already shipped releases with no future release planned label Jun 8, 2023
@manasvinibs manasvinibs merged commit a6c86f8 into opensearch-project:2.8 Jun 16, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
not in release PRs backported to already shipped releases with no future release planned
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants