Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Chokidar 1.7 has a low severity vulnerability #7

Closed
Euphillya opened this issue Mar 6, 2019 · 2 comments
Closed

Chokidar 1.7 has a low severity vulnerability #7

Euphillya opened this issue Mar 6, 2019 · 2 comments

Comments

@Euphillya
Copy link

Chokidar 1.7 has a low severity vulnerability with braces.

Report Log NPM :
` npm audit

                   === npm audit security report ===                        
                                                                            
                                                                            
                             Manual Review                                  
         Some vulnerabilities require your attention to resolve             
                                                                            
      Visit https://go.npm.me/audit-guide for additional guidance           

Low Regular Expression Denial of Service

Package braces

Patched in >=2.3.1

Dependency of d8093eed39f8dcb4bc474bb9753cbaeccf44b71bb9413cf13042e55bf2d…

Path d8093eed39f8dcb4bc474bb9753cbaeccf44b71bb9413cf13042e55bf2d…
> chokidar > anymatch > micromatch > braces

More info https://npmjs.com/advisories/786

found 1 low severity vulnerability in 1511 scanned packages
1 vulnerability requires manual review. See the full report for details.`

@Pupix
Copy link
Owner

Pupix commented Mar 6, 2019

Will update dependencies this weekend and make a new version. Thanks!

@Pupix
Copy link
Owner

Pupix commented Mar 10, 2019

Fixed.

@Pupix Pupix closed this as completed Mar 10, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants