Skip to content

CVE-2022-37614: Critical Vulnerability in mockery module #955

@luxaflow

Description

@luxaflow

Please check our current Issues to see if someone already reported this https://github.com/Microsoft/azure-pipelines-task-lib/issues

Environment

azure-pipelines-task-lib version: 4.4.0

Issue Description

These is a critical vulnerability in mfncooper/mocker 2.1.0 module used.

Expected behaviour

No issues when used, but also no critical security CVE's in used in modules

Actual behaviour

Currently critical security CVE in mfncooper/mockery module
https://nvd.nist.gov/vuln/detail/CVE-2022-37614

Steps to reproduce

N/A

Logs

Link to CVE: https://nvd.nist.gov/vuln/detail/CVE-2022-37614

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions