-
-
Notifications
You must be signed in to change notification settings - Fork 1.1k
Closed
Description
Hello,
I just want to mention that the current version of Multer uses a very old version of Busboy which uses Dicer.
This version of Dicer has this vulnerability https://nvd.nist.gov/vuln/detail/CVE-2022-24434
The latest version of Busboy 1.6.0 does not use Dicer anymore and it is save.
Would it be possible to update Busboy's version?
Kind regards
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels
