You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
High Arbitrary Code Execution Package underscore Patched in >=1.12.1 Dependency of tfx-cli [dev] Path tfx-cli > azure-devops-node-api > typed-rest-client > underscore More info https://npmjs.com/advisories/1674 High Arbitrary Code Execution Package underscore Patched in >=1.12.1 Dependency of tfx-cli [dev] More info https://npmjs.com/advisories/1674 found 2 high severity vulnerabilities in 230 scanned packages 2 vulnerabilities require manual review. See the full report for details.
akanieski
changed the title
Bump versions on azure-devops-node-api to 10.2.2 to address
Bump versions on azure-devops-node-api to 10.2.2 to address CVE-2021-23358
May 20, 2021
According to microsoft/azure-devops-node-api#440 underscore was bumped up on 10.2.2.
The text was updated successfully, but these errors were encountered: