Skip to content

CVE-2022-41854 impacting snakeyaml 1.29 #114

@arcadmlafon

Description

@arcadmlafon

Hi, thanks for this great editor,

I know that in the context of a text editor, this problem may be ignored but just for information there is a vulnerability declared on snakeyaml which may cause application crash depending on the origin of the yaml source. An upgrade to version 1.32 should be great.

See https://nvd.nist.gov/vuln/detail/CVE-2022-41854 for details. (Corrected link !)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions