Old CVE-2024-7774 is reported by AWS scanner - is it valid? #29918
-
Checked other resources
Commit to Help
Example Coden/a DescriptionHi! AWS recently started to reporting langchain package as Critical Vulnerability without a fix, pointing to this old CVE-2024-7774. I've checked that it was fixed here https://github.com/langchain-ai/langchainjs/releases/tag/0.2.19, but this is JS flavor. So now I'm wondering if this is valid, as that scanner was quiet about it for all that time. System Infon/a |
Beta Was this translation helpful? Give feedback.
Replies: 2 comments
-
Hi, I've also noticed this recently. can someone help me with this. |
Beta Was this translation helpful? Give feedback.
-
I believe it was some AWS false-positive, as now status changed to |
Beta Was this translation helpful? Give feedback.
I believe it was some AWS false-positive, as now status changed to
closed
on their side.