You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
We are using passport-wsfed-saml2 package of version 4.1.0. passport-wsfed-saml2 has deep dependency node-forge of version ^0.7.0.
The dependency tree is like below:
We are using passport-wsfed-saml2 package of version 4.1.0. passport-wsfed-saml2 has deep dependency node-forge of version ^0.7.0.
The dependency tree is like below:
The [email protected] has high-risk security vulnerability CVE-2020-7720. (https://nvd.nist.gov/vuln/detail/CVE-2020-7720). These vulnerabilities are fixed in the 0.10.0 version of node-forge.
So updating the xml-encryption package would resolve these vulnerabilities. Please update the package to resolve vulnerabilities.Thanks.
The text was updated successfully, but these errors were encountered: