Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Contains insecure dependencies that npm audit requires manual review for. #20

Open
duaneking opened this issue May 20, 2020 · 0 comments

Comments

@duaneking
Copy link

$ npm audit
=== npm audit security report ===

                             Manual Review
         Some vulnerabilities require your attention to resolve

      Visit https://go.npm.me/audit-guide for additional guidance

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack [dev]

Path webpack > watchpack > watchpack-chokidar2 > chokidar >
fsevents > node-pre-gyp > mkdirp > minimist

More info https://nodesecurity.io/advisories/1179

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack-dev-server [dev]

Path webpack-dev-server > chokidar > fsevents > node-pre-gyp >
mkdirp > minimist

More info https://nodesecurity.io/advisories/1179

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack [dev]

Path webpack > watchpack > watchpack-chokidar2 > chokidar >
fsevents > node-pre-gyp > tar > mkdirp > minimist

More info https://nodesecurity.io/advisories/1179

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack-dev-server [dev]

Path webpack-dev-server > chokidar > fsevents > node-pre-gyp >
tar > mkdirp > minimist

More info https://nodesecurity.io/advisories/1179

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack [dev]

Path webpack > watchpack > watchpack-chokidar2 > chokidar >
fsevents > node-pre-gyp > rc > minimist

More info https://nodesecurity.io/advisories/1179

Low Prototype Pollution

Package minimist

Patched in >=0.2.1 <1.0.0 || >=1.2.3

Dependency of webpack-dev-server [dev]

Path webpack-dev-server > chokidar > fsevents > node-pre-gyp > rc
> minimist

More info https://nodesecurity.io/advisories/1179

found 6 low severity vulnerabilities in 884 scanned packages
6 vulnerabilities require manual review. See the full report for details.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant