Snyk: snowflake-connector-net Microsoft.IdentityModel.JsonWebTokens 6.10.2 | Snyk ID - SNYK-DOTNET-MICROSOFTIDENTITYMODELJSONWEBTOKENS-6148656 #847
Labels
security vulnerability
Security vulnerability detected by WhiteSource
status-fixed_awaiting_release
The issue has been fixed, its PR merged, and now awaiting the next release cycle of the connector.
Title: Snyk: snowflake-connector-net Microsoft.IdentityModel.JsonWebTokens 6.10.2
Additional information on Snyk can be found here: https://snyk.io/org/snowflakedb-sca-scanning-public-repo/project/6e936eea-71aa-4aa5-a46f-3ee09a811bff
Repo: snowflake-connector-net
CVE: CVE-2024-21319
Package Type: dotnet
Package Name: Microsoft.IdentityModel.JsonWebTokens
Package Version: 6.10.2
Snyk ID: SNYK-DOTNET-MICROSOFTIDENTITYMODELJSONWEBTOKENS-6148656
Vulnerability URL: http://security.snyk.io/vuln/SNYK-DOTNET-MICROSOFTIDENTITYMODELJSONWEBTOKENS-6148656
Severity: medium
Introduced Date: 2024-01-11
Projects with Vulnerability: snowflakedb/snowflake-connector-net:Snowflake.Data/Snowflake.Data.csproj
Target File: Snowflake.Data/Snowflake.Data.csproj
JIRA Ticket: https://snowflakecomputing.atlassian.net/browse/SNOW-1005621
The text was updated successfully, but these errors were encountered: