You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
According to https://nvd.nist.gov/vuln/detail/CVE-2024-21534, there's a vulnerability in jsonpath-plus package used in serverless-offline due to improper sanitization. According to Snyk, severity is "critical".
Would be great if package can be bumped to v10 so fix the issue.
Expected behavior/code
serverless-offline has the issue fixed to let consumers to upgrade.
ProjectFrank, cojj90, jonfairbanks, ps-natalija-bjekovic, rashedoumar and 4 morethetumper