Skip to content

Fix multiple security issue found in Microsoft.AspNetCore.Components 6.0.0 #146

@sileclercq

Description

@sileclercq

Is your feature request related to a problem? Please describe.
Microsoft.AspNetCore.Components 6.0.0 is known to have the following security issues (at least 11 !):
CVE-2022-24464
CVE-2022-29117
CVE-2022-29145
CVE-2022-21986
CVE-2022-38013
CVE-2022-23267
CVE-2023-38180
BDSA-2023-1778
CVE-2023-33170
BDSA-2023-3189
CVE-2023-36558
BDSA-2023-2741
CVE-2023-35391
CVE-2022-34716

Describe the solution you'd like
Upgrade to 6.0.5 so we stop having critical security warning on this library else we will need to stop using it

Describe alternatives you've considered
Stop using this library as we cannot afford having a library using sub component which are known to be weak now

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions