-
-
Notifications
You must be signed in to change notification settings - Fork 861
goog-vulnz flags CVE-2024-24790 in esbuild 0.19.7 #4045
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Comments
Fixed in |
It looks like it's not completely resolved. Since there's a reliance on |
It seems the issue is this dependency in drizzle-kit:
esm-loader is used here: drizzle-orm/drizzle-kit/build.dev.ts Line 27 in 9e81def
|
Hello!
Artifact Registry flags CVE-2024-24790 in
drizzle-kit
usage ofesbuild
(e.g./app/node_modules/drizzle-kit/node_modules/@esbuild/linux-x64/bin/esbuild
)Upon closer inspection it seems that per evanw/esbuild#4022 (comment)
esbuild 0.24.2
should resolve this one. I'll make an issue and attempt a PR to bump this for ya'll 👍The text was updated successfully, but these errors were encountered: