Bug#1036975: bullseye-pu: package node-url-parse/1.5.3-1+deb11u2

2023-10-08 Thread Yadd
On 10/8/23 16:03, Jonathan Wiltshire wrote: Hi, This request was approved but not uploaded in time for the previous point release (11.8). Should it be included in 11.9, or should this request be abandoned and closed? Sorry, I was travelling. I just pushed the update Thanks!

Bug#1036975: bullseye-pu: package node-url-parse/1.5.3-1+deb11u2

2023-10-08 Thread Jonathan Wiltshire
Hi, This request was approved but not uploaded in time for the previous point release (11.8). Should it be included in 11.9, or should this request be abandoned and closed? -- Jonathan Wiltshire j...@debian.org Debian Developer

Bug#1036975: bullseye-pu: package node-url-parse/1.5.3-1+deb11u2

2023-06-17 Thread Adam D. Barratt
Control: tags -1 + confirmed On Wed, 2023-05-31 at 14:47 +0400, Yadd wrote: > node-url-parse is vulnerable to authorization bypass through > user-controlled key prior version 1.5.6 > Please go ahead. Regards, Adam

Bug#1036975: bullseye-pu: package node-url-parse/1.5.3-1+deb11u2

2023-05-31 Thread Yadd
Package: release.debian.org Severity: normal Tags: bullseye User: release.debian@packages.debian.org Usertags: pu X-Debbugs-Cc: node-url-pa...@packages.debian.org Control: affects -1 + src:node-url-parse [ Reason ] node-url-parse is vulnerable to authorization bypass through user-controlled