Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

npm gives low vulnerability on tableexport.jquery.plugin>jspdf-autotable > jspdf > canvg > xmldom #321

Open
jbieneck opened this issue Mar 17, 2021 · 1 comment

Comments

@jbieneck
Copy link

jbieneck commented Mar 17, 2021

here is the output of npm audit:
$ npm audit
=== npm audit security report ===
Manual Review
Some vulnerabilities require your attention to resolve
Visit https://go.npm.me/audit-guide for additional guidance
Low Misinterpretation of malicious XML input
Package xmldom
Patched in >=0.5.0
Dependency of tableexport.jquery.plugin [dev]
Path tableexport.jquery.plugin > jspdf-autotable > jspdf > canvg > xmldom
More info https://npmjs.com/advisories/1650
found 1 low severity vulnerability in 1256 scanned packages
1 vulnerability requires manual review. See the full report for details.

@hhurz
Copy link
Owner

hhurz commented Mar 17, 2021

There is a 5 day old pull request on the cnvg project that targets this issue. Think you have to wait until they merged this request.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants