We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Currently, a security issue is being reported due to the use of guzzlehttp/oauth-subscriber:
# composer audit Found 1 security vulnerability advisory affecting 1 package: +-------------------+----------------------------------------------------------------------------------+ | Package | guzzlehttp/oauth-subscriber | | Severity | low | | CVE | CVE-2025-21617 | | Title | Guzzle OAuth Subscriber has insufficient nonce entropy | | URL | https://github.com/advisories/GHSA-237r-r8m4-4q88 | | Affected versions | <0.8.1 | | Reported at | 2025-01-06T19:23:26+00:00 | +-------------------+----------------------------------------------------------------------------------+
n/a
4.13.9
2.1.37
No
No response
The text was updated successfully, but these errors were encountered:
👍🏻 +1, also opened an issue related to this, with security-advisories failing: #2215
would be great if this could be resolved :)
Sorry, something went wrong.
Fixed for the next release. To get this early, run composer require verbb/formie:"dev-craft-4 as 2.1.37".
composer require verbb/formie:"dev-craft-4 as 2.1.37"
No branches or pull requests
Describe the bug
Currently, a security issue is being reported due to the use of guzzlehttp/oauth-subscriber:
Steps to reproduce
Form settings
n/a
Craft CMS version
4.13.9
Plugin version
2.1.37
Multi-site?
No
Additional context
No response
The text was updated successfully, but these errors were encountered: