[wp-trac] [WordPress Trac] #60571: Lodash Vulnerability

WordPress Trac noreply at wordpress.org
Mon Feb 19 11:17:05 UTC 2024


#60571: Lodash Vulnerability
--------------------------------+----------------------
 Reporter:  adeel321            |       Owner:  (none)
     Type:  defect (bug)        |      Status:  closed
 Priority:  normal              |   Milestone:
Component:  External Libraries  |     Version:
 Severity:  normal              |  Resolution:  invalid
 Keywords:                      |     Focuses:
--------------------------------+----------------------
Changes (by swissspidy):

 * status:  new => closed
 * severity:  critical => normal
 * component:  General => External Libraries
 * version:  6.4.3 =>
 * milestone:  Awaiting Review =>
 * resolution:   => invalid


Comment:

 Hi there and welcome to Trac.

 WordPress bundles the latest version of Lodash, which is currently version
 4.17.21.

 If you are using an older version, then there might be a plugin or theme
 on your site that overrides the default one. FWIW, on your site I don't
 even see Lodash being used.

 If you need help with plugins and themes changing your Lodash version, I
 recommend using the [https://wordpress.org/support support forums]. And if
 your security tool lists incorrect data, well, you should report this to
 the tool makers.

 Again, WordPress uses the latest version, so this issue is specific to
 your site. Hence closing this ticket.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/60571#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list