Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

VULN: CVE-2024-32655 in Npgsql dependency #1493

Closed
la35-esimplicity opened this issue May 17, 2024 · 3 comments
Closed

VULN: CVE-2024-32655 in Npgsql dependency #1493

la35-esimplicity opened this issue May 17, 2024 · 3 comments
Labels

Comments

@la35-esimplicity
Copy link

la35-esimplicity commented May 17, 2024

https://nvd.nist.gov/vuln/detail/CVE-2024-32655

This vulnerability is fixed in Npgsql 4.0.14, 4.1.13, 5.0.18, 6.0.11, 7.0.7, and 8.0.3. Please update BulkExtensions to use those or later versions. Thank you.

@la35-esimplicity
Copy link
Author

@borisdj - FYI.

@la35-esimplicity la35-esimplicity changed the title CVE-2024-32655 in Npgsql dependency VULN: CVE-2024-32655 in Npgsql dependency May 17, 2024
@la35-esimplicity
Copy link
Author

Related: #1481

@borisdj
Copy link
Owner

borisdj commented May 23, 2024

New package 8.0.4 with latest nugets published.

@borisdj borisdj closed this as completed May 23, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

2 participants