Skip to content

Conversation

tstoney-exiger
Copy link

Updates

  • Affected products
  • Source code location
  • Summary

Comments
has been fixed since 2022. The references in this page even includes the commit it was fixed in, this page just didn't have a fixed version.
payara/Payara@cccdfdd

More sources:
payara/Payara#6136 (comment)
https://github.com/payara/Payara/issues?q=FISH-6775

Submitting the affected products as both payara the distribution, and the internal web "web-core" because that library is specifically what triggered the false positive

@github-actions github-actions bot changed the base branch from main to tstoney-exiger/advisory-improvement-6090 September 4, 2025 17:03
@advisory-database advisory-database bot closed this Sep 4, 2025
@github-actions github-actions bot deleted the tstoney-exiger-GHSA-q35w-85pq-rv3x branch September 4, 2025 17:46
@shelbyc
Copy link
Contributor

shelbyc commented Sep 4, 2025

Hi @tstoney-exiger, sorry about the PR showing as closed rather than merged. GHSA-q35w-85pq-rv3x has been reviewed with your suggestions taken into account and I'm working with my teammates to make sure you receive credit on the advisory.

@shelbyc
Copy link
Contributor

shelbyc commented Sep 4, 2025

@tstoney-exiger Your credit is on GHSA-q35w-85pq-rv3x now. Thanks again for your contribution!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants