Skip to content

Commit

Permalink
chore: publish v13.1.1
Browse files Browse the repository at this point in the history
  • Loading branch information
josdejong committed Aug 27, 2024
1 parent ed2cce4 commit 695a246
Show file tree
Hide file tree
Showing 4 changed files with 17 additions and 4 deletions.
13 changes: 13 additions & 0 deletions HISTORY.md
Original file line number Diff line number Diff line change
@@ -1,5 +1,18 @@
# History

# 2024-08-27, 13.1.1

- Fix security vulnerability in the CLI and web API allowing to call functions
`import`, `createUnit` and `reviver`, allowing to get access to the internal
math namespace and allowing arbitrary code execution. Thanks @StarlightPWN.
- Fix security vulnerability: when overwriting a `rawArgs` function with a
non-`rawArgs` function, it was still called with raw arguments. This was both
a functional issue and a security issue. Thanks @StarlightPWN.
- Fix security vulnerability: ensure that `ObjectWrappingMap` cannot delete
unsafe properties. Thanks @StarlightPWN.
- Fix: not being able to use methods and properties on arrays inside the
expression parser.

# 2024-08-26, 13.1.0

- Feat: support multiple inputs in function `map` (#3228, #3196).
Expand Down
4 changes: 2 additions & 2 deletions package-lock.json

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion package.json
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
{
"name": "mathjs",
"version": "13.1.0",
"version": "13.1.1",
"description": "Math.js is an extensive math library for JavaScript and Node.js. It features a flexible expression parser with support for symbolic computation, comes with a large set of built-in functions and constants, and offers an integrated solution to work with different data types like numbers, big numbers, complex numbers, fractions, units, and matrices.",
"author": "Jos de Jong <wjosdejong@gmail.com> (https://github.com/josdejong)",
"homepage": "https://mathjs.org",
Expand Down
2 changes: 1 addition & 1 deletion src/version.js
Original file line number Diff line number Diff line change
@@ -1,3 +1,3 @@
export const version = '13.1.0'
export const version = '13.1.1'
// Note: This file is automatically generated when building math.js.
// Changes made in this file will be overwritten.

0 comments on commit 695a246

Please sign in to comment.