Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GHSA-p2fh-w83x-vrm3] In Progress Telerik UI for WPF versions prior to 2024 Q4 ... #5093

Conversation

a-shoemaker
Copy link

Updates

  • Affected products
  • Summary

Comments
Provides at least one of the common NuGet package names that this vulnerability comes in.

@github-actions github-actions bot changed the base branch from main to a-shoemaker/advisory-improvement-5093 December 17, 2024 16:30
@JonathanLEvans
Copy link

Hi @a-shoemaker, thank you for your contribution. I am having trouble finding Telerik.Windows.Controls.for.Wpf.Xaml in https://www.nuget.org/. Could you provide a link to where I can find it?

@a-shoemaker
Copy link
Author

Hi @a-shoemaker, thank you for your contribution. I am having trouble finding Telerik.Windows.Controls.for.Wpf.Xaml in https://www.nuget.org/. Could you provide a link to where I can find it?

I don't believe so as it's not an open source package. See: https://docs.telerik.com/devtools/winforms/visual-studio-integration/install-using-nuget

My personal desire here is to get the Telerik vulnerabilities to pop in Azure DevOps Advanced Security. Not sure if perhaps there is another method for this.

@JonathanLEvans
Copy link

Our advisories need to be connected to a package that is in one of the supported ecosystems.

@github-actions github-actions bot deleted the a-shoemaker-GHSA-p2fh-w83x-vrm3 branch December 17, 2024 20:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants