-
Notifications
You must be signed in to change notification settings - Fork 19.6k
Closed
Labels
stalestat:awaiting response from contributortype:supportUser is asking for help / asking an implementation question. Stackoverflow would be better suited.User is asking for help / asking an implementation question. Stackoverflow would be better suited.
Description
Hello, I checked repo but don't see any process available for backporting fixes to previous minor versions. There was recently a fix (#20751) for a public GHSA (GHSA-48g7-3x6r-xfhp), But the fix was only applied in a new minor version 3.9, leaving 3.(0-8) still vulnerable.
Is there any process for backporting a fix to previous minor versions? I am happy to help raise PR adding the fix to version tags, but not sure the best way to do this and to drive new patch releases for these versions.
Thanks!
Metadata
Metadata
Assignees
Labels
stalestat:awaiting response from contributortype:supportUser is asking for help / asking an implementation question. Stackoverflow would be better suited.User is asking for help / asking an implementation question. Stackoverflow would be better suited.