Navigation

    Inedo Community Forums

    Forums

    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Groups
    1. Home
    2. richard.carpenter_9650
    R
    • Profile
    • Following
    • Followers
    • Topics
    • Posts
    • Best
    • Groups

    richard.carpenter_9650

    @richard.carpenter_9650

    0
    Reputation
    3
    Posts
    1
    Profile views
    0
    Followers
    0
    Following
    Joined Last Online

    richard.carpenter_9650 Follow

    Best posts made by richard.carpenter_9650

    This user hasn't posted anything yet.

    Latest posts made by richard.carpenter_9650

    • RE: Two PowerShell Gallery packages shown in all feeds

      @stevedennis Thanks for the reply. I understand that these packages aren't in my feed and are displayed from PSGallery.
      PSGallery contains thousands of packages. Why are just these two packages displayed?
      Neither package has been downloaded and caching is disabled. I would expect to only see the packages I have added to the feed. This was true in previous versions of ProGet.
      This just seems odd to me.

      I'll take a look at filtering.
      Thanks for the suggestion.

      posted in Support
      R
      richard.carpenter_9650
    • Two PowerShell Gallery packages shown in all feeds

      When I create a PowerShell feed with a PSGallery connector it always shows two packages.
      0004-New-AzureRmVmAvailabilitySetPsg and 0install.

      There doesn't appear to be anyway to remove these packages.
      Is there a way to fix this?

      2023-04-14 10_35_07-Clipboard.png

      posted in Support
      R
      richard.carpenter_9650
    • XSS vulnerability on JQuery < 3.5.0 - ProGet 5.3.4

      Hi,

      An internal security scan has flagged the ProGet website as running a vulnerable version of JQuery.
      Do you have plans to upgrade the version of jQuery used in ProGet?
      If so, can you share when this might be released?

      This is the URL that is being reported https://<server>/resources/InedoLib/jquery-1.11.3.min.js?900.0.0.20

      The CVE for this vulnerability is:
      http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11022

      This page details the issue, the mitigation, and any issues that may be caused.
      https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/

      Thanks,

      posted in Support
      R
      richard.carpenter_9650