Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fixed vulnerability with nth-check package in Gradle tasks #16535

Conversation

SvetlanaMaliugina
Copy link
Contributor

Task name: GradleV2, GradleV3

Description: Changed versions of azure-pipelines-tasks-codecoverage-tools and azure-pipelines-tasks-codeanalysis-common to fix vulnerabilities with nth-check

Documentation changes required: N

Added unit tests: N

Attached related issue: Bug 1953810: [Component Governance Alert] - CVE-2021-3803 in nth-check 1.0.2. Severity: High #3210

Checklist:

  • Task version was bumped
  • Checked that applied changes work as expected (Tested by Canary pipeline at Ubuntu1804, Win19, Win22)

@SvetlanaMaliugina SvetlanaMaliugina requested a review from a team as a code owner July 6, 2022 11:35
@DmitriiBobreshev
Copy link
Contributor

buddy-tested Gradle tasks, all correct, Pipeline logs attached:

@SvetlanaMaliugina SvetlanaMaliugina merged commit 6826ed7 into master Jul 7, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

6 participants