1. eShopOnContainers Fork Exposes Test Environment to CVE-2024-21907 via Vulnerable Newtonsoft.Json Dependency
A development fork of the popular eShopOnContainers e-commerce reference architecture has been flagged for including a known-severity vulnerability in its test suite dependencies. WhiteSource security scanning detected the presence of Newtonsoft.Json version 12.0.2—a package with a documented CVSS score of 7.5—packaged...