Skip to content

Backport: Bump angus-mail to 2.0.4#5242

Merged
nscuro merged 1 commit intoDependencyTrack:4.13.xfrom
nscuro:backport-pr-5237
Aug 25, 2025
Merged

Backport: Bump angus-mail to 2.0.4#5242
nscuro merged 1 commit intoDependencyTrack:4.13.xfrom
nscuro:backport-pr-5237

Conversation

@nscuro
Copy link
Copy Markdown
Member

@nscuro nscuro commented Aug 25, 2025

Description

Addressed Issue

Resolves CVE-2025-7962
Backports #5237

Additional Details

N/A

Checklist

  • I have read and understand the contributing guidelines
  • This PR fixes a defect, and I have provided tests to verify that the fix is effective
  • This PR implements an enhancement, and I have provided tests to verify that it works as intended
  • This PR introduces changes to the database model, and I have added corresponding update logic
  • This PR introduces new or alters existing behavior, and I have updated the documentation accordingly

@nscuro nscuro added this to the 4.13.4 milestone Aug 25, 2025
@nscuro nscuro added the dependencies Pull requests that update a dependency file label Aug 25, 2025
@owasp-dt-bot
Copy link
Copy Markdown

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

@nscuro
Copy link
Copy Markdown
Member Author

nscuro commented Aug 25, 2025

Test failures are unrelated.

@nscuro nscuro merged commit ca14b1a into DependencyTrack:4.13.x Aug 25, 2025
5 of 6 checks passed
@nscuro nscuro deleted the backport-pr-5237 branch August 25, 2025 18:38
@github-actions github-actions bot locked as resolved and limited conversation to collaborators Sep 25, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants