CVE-2022-46161: False Positive
(updated )
This vulnerability affects the dev-playground
component of pdfmake which is not shipped in the builds available through NPM.
References
- github.com/bpampuch/pdfmake/blob/802813970ac6de68a0bd0931b74150b33da0dd18/dev-playground/server.js
- github.com/bpampuch/pdfmake/commit/c35b7ad498ca1e3938f19c043dd4bf28b8fdf2ff
- github.com/bpampuch/pdfmake/issues/2487
- nvd.nist.gov/vuln/detail/CVE-2022-46161
- securitylab.github.com/advisories/GHSL-2022-068_pdfmake/
Detect and mitigate CVE-2022-46161 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →