Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fixed 6 vulnerabilities (2 low, 3 high, 1 critical) #7

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Fixed 6 vulnerabilities (2 low, 3 high, 1 critical) #7

wants to merge 1 commit into from

Conversation

jaxxibae
Copy link

                       === npm audit security report ===

# Run  npm install --save-dev [email protected]  to resolve 3 vulnerabilities
SEMVER WARNING: Recommended action is a potentially breaking change

  High            Regular Expression Denial of Service

  Package         minimatch

  Dependency of   mocha [dev]

  Path            mocha > glob > minimatch

  More info       https://nodesecurity.io/advisories/118




  Low             Regular Expression Denial of Service

  Package         debug

  Dependency of   mocha [dev]

  Path            mocha > debug

  More info       https://nodesecurity.io/advisories/534




  Critical        Command Injection

  Package         growl

  Dependency of   mocha [dev]

  Path            mocha > growl

  More info       https://nodesecurity.io/advisories/146



# Run  npm install --save-dev [email protected]  to resolve 2 vulnerabilities

  High            Regular Expression Denial of Service

  Package         minimatch

  Dependency of   istanbul [dev]

  Path            istanbul > fileset > minimatch

  More info       https://nodesecurity.io/advisories/118




  High            Regular Expression Denial of Service

  Package         minimatch

  Dependency of   istanbul [dev]

  Path            istanbul > fileset > glob > minimatch

  More info       https://nodesecurity.io/advisories/118



# Run  npm install [email protected]  to resolve 1 vulnerability
SEMVER WARNING: Recommended action is a potentially breaking change

  Low             Prototype Pollution

  Package         lodash

  Dependency of   lodash

  Path            lodash

  More info       https://nodesecurity.io/advisories/577


Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant