Skip to content

Commit 7af9732

Browse files
committed
docs(CHANGES): Detail CVE-2022-21187 libvcs package update
1 parent d37b142 commit 7af9732

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

CHANGES

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -23,8 +23,8 @@ $ pipx install --suffix=@next 'vcspull' --pip-args '\--pre' --force
2323

2424
### Security
2525

26-
- Update libvcs 0.11.0 -> 0.11.1 to patch mercurial URL injection
27-
vulnerability with URLs ([info](https://github.com/vcs-python/libvcs/pull/306))
26+
- Update libvcs 0.11.0 -> 0.11.1 to patch [CVE-2022-21187](https://nvd.nist.gov/vuln/detail/CVE-2022-21187): mercurial URL injection
27+
vulnerability with URLs arguments ([libvcs#306](https://github.com/vcs-python/libvcs/pull/306))
2828

2929
### Development
3030

0 commit comments

Comments
 (0)