Skip to content

Commit c736474

Browse files
authored
fix typo in plotly details to correctly reflect the JS version containing the fix (>= 2.25.2) (#20)
1 parent 0c58fb6 commit c736474

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

vulns/plotly/RSEC-2025-1.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
id: RSEC-2025-1
22
details: |
33
The plotly R package up through the latest 4.11.0 includes plotly.js library 2.11.1.
4-
Plotly.js releases prior to version 2.5.2 have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.
4+
Plotly.js releases prior to version 2.25.2 have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.
55
summary: Risk of __proto__ pollution Vulnerability
66
affected:
77
- package:
@@ -46,4 +46,4 @@ references:
4646
upstream:
4747
- CVE-2023-46308
4848
published: "2025-12-23T15:00:00Z"
49-
modified: "2025-12-23T15:00:00Z"
49+
modified: "2025-12-26T22:20:00Z"

0 commit comments

Comments
 (0)