db-migrate / db-migrate/mongodb

Update mongodb version to patch high severity vulnerability [$20]

Open
#40 3 comments 2 reactions 0 assignees View on GitHub
Dominant language
JavaScript
Stars
25
Forks
57
PR merge metrics
No merged PRs in 30d

Description

There is a high severity vulnerability in the current version (`1.5.0`) - Denial of Service
https://npmjs.com/advisories/1203

It does not pass `npm audit`. Please upgrade `mongodb` to version `>=3.1.13` so it passes.

---
There is a **[$20 open bounty](https://www.bountysource.com/issues/82252859-update-mongodb-version-to-patch-high-severity-vulnerability?utm_campaign=plugin&utm_content=tracker%2F12293389&utm_medium=issues&utm_source=github)** on this issue. Add to the bounty at [Bountysource](https://www.bountysource.com/?utm_campaign=plugin&utm_content=tracker%2F12293389&utm_medium=issues&utm_source=github).

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.