Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GitHub Security Issues #9701

Closed
jekram opened this issue Sep 7, 2020 · 3 comments
Closed

GitHub Security Issues #9701

jekram opened this issue Sep 7, 2020 · 3 comments

Comments

@jekram
Copy link
Contributor

jekram commented Sep 7, 2020

GitHub Security issues

Screen Shot 2020-09-06 at 10 48 26 PM

Screen Shot 2020-09-06 at 10 48 53 PM

@sojharo
Copy link
Collaborator

sojharo commented Sep 7, 2020

I have looked into this. It is a library that we are using to parse the csv files uploaded by admins when they upload customer information. It is used on client side in all places where we have upload contacts feature.

I am assigning this to sania to find a latest library and switch that with this.

This was referenced Sep 8, 2020
@saniasiddiqui
Copy link
Contributor

In this issue we have updated the library papaparse. And npm audit results to see the vulnerabilities report.
image

The above file does not contain security vulnerability now. It is also indicated in the following issue that fix was given in version 5.2.0
mholt/PapaParse#801 (comment)
Assigning @sojharo to test and resolve.

@sojharo
Copy link
Collaborator

sojharo commented Sep 9, 2020

Thanks. It is good now.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants