Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

xmlhttprequest-ssl severe vulnerability #190

Open
jlaw17 opened this issue Jul 5, 2021 · 2 comments
Open

xmlhttprequest-ssl severe vulnerability #190

jlaw17 opened this issue Jul 5, 2021 · 2 comments
Assignees
Labels
bug Something isn't working

Comments

@jlaw17
Copy link

jlaw17 commented Jul 5, 2021

We've noticed a severe vulnerability as flagged by dependabot running within our repo. Would it be possible to remediate this vulnerability and patch the package?

Screenshot 2021-07-05 at 15 37 30
Screenshot 2021-07-05 at 15 38 00

@jlaw17 jlaw17 added the bug Something isn't working label Jul 5, 2021
@jlaw17
Copy link
Author

jlaw17 commented Sep 22, 2021

Following up on this. It seems although Dependabot is enabled in this repo but hasn't picked up on this particular vulnerability

@edimitchel
Copy link

The main maintainer has leave the project, and who was added (me) did have right for making PR mergeable..

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

3 participants