Reports received continously #180867
Unanswered
airween
asked this question in
Code Security
Replies: 1 comment 2 replies
-
|
duplicate of #180862? |
Beta Was this translation helpful? Give feedback.
2 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Select Topic Area
Question
Body
Hi all,
we have a Hugo based site served by GH pages. Hugo has a template which had an "exampleSite" directory.
That directory had several
npmpackages, which had many issues. Because we don't use that directory (the "exampleSite"), I removed it from our repository.Despite of this, I continuously received the notifications about a bug (in e-mail), but when I check the link, the report is empty:
https://github.com/advisories/GHSA-5gfm-wpxj-wjgq/dependabot?query=user:owasp-modsecurity
In the mail I got this message:
"1 repository in your owasp-modsecurity organization might be affected by a security vulnerability in node-forge.
node-forge has an Interpretation Conflict vulnerability via its ASN.1 Validator Desynchronization
[High severity]
node-forge
CVE-2025-12816
owasp-modsecurity/website
Is it possible to stop this report? The mentioned file no longer exists.
Beta Was this translation helpful? Give feedback.
All reactions