Home › Forums › Quform PHP › phpmailer vulnerabilities found in quform/composer.lock
Hi – Github tells me there is a quform security vulnerability as follows: 3 phpmailer/phpmailer vulnerabilities found in quform/composer.lock
I did not find anything in the forums. The suggested remediation is:
Upgrade phpmailer/phpmailer to version 6.5.0 or later. For example:
"require": { "phpmailer/phpmailer": "6.5.0" }
What do you suggest?
Thanks.
You don't have permission to view this content. Please log in or register and then verify your purchases to gain access.
Hello – Thanks for responding. However, I do not have access to the CLI. When do you expect the next release and will I receive that release?
Thank you,
Jeff
Hi Ally – Thank you for the quick response and updated version. Per your instructions, I replaced composer.json and composer.lock and the entire vendor folder. Tested and appears to be working. Also, no dependabot notices.
composer.json
composer.lock
vendor
Warmest regards – Jeff