[bitnami/node] Security issue with cross-spawn < 7.0.5 (CVE-2024-21538) #76148
Labels
stale
15 days without activity
tech-issues
The user has a technical issue about an application
triage
Triage is needed
Name and Version
bitnami/node:18-debian-12
andbitnami/node:20-debian-12
What steps will reproduce the bug?
Scan the Node 18 or 20 images with any security tool, such as Trivy:
What is the expected behavior?
We shouldn't get cross-spawn vulnerability, as it is fixed upstream.
What do you see instead?
We are getting cross-spawn vulnerability
Additional information
Upgrade the npm package to 10.9.2, see npm/cli@029060c
The text was updated successfully, but these errors were encountered: