SRVKP-10456,SRVKP-9683,SRVKP-10041,SRVKP-9700,SRVKP-10058 CVE fixes#904
SRVKP-10456,SRVKP-9683,SRVKP-10041,SRVKP-9700,SRVKP-10058 CVE fixes#904arvindk-softwaredev wants to merge 1 commit intoopenshift-pipelines:mainfrom
Conversation
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: anwesha-palit-redhat, arvindk-softwaredev The full list of commands accepted by this bot can be found here. The pull request process is described here DetailsNeeds approval from an approver in each of these files:
Approvers can indicate their approval by writing |
|
/retest |
|
/cherrypick release-v1.20.x |
|
@arvindk-softwaredev: once the present PR merges, I will cherry-pick it on top of DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
/cherrypick release-v1.15.x |
|
@arvindk-softwaredev: once the present PR merges, I will cherry-pick it on top of DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
Builds are failing because of node 18 in CI, so we will merge once the CI is upgraded to node 20. |
|
/retest |
|
/retest-required |
|
@arvindk-softwaredev: The following tests failed, say
Full PR test history. Your PR dashboard. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here. |


Summary
This PR addresses the CVE fixes for
Screenshots Before - Vulnerable versions
qs - 6.13.0

node-forge - 1.3.1

Screenshots After
qs - 6.14.1

node-forge - no longer present in deps
