You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
When installing web3 or using create-react-app, warnings about vulnerabilities pop up. For example:
added 42 packages, and audited 1585 packages in 14s
268 packages are looking for funding
run `npm fund` for details
8 vulnerabilities (2 moderate, 6 high)
To address all issues (including breaking changes), run:
npm audit fix --force
Run `npm audit` for details.
or with more details after typing npm audit:
# npm audit report
nth-check <2.0.1
Severity: high
Inefficient Regular Expression Complexity in nth-check - https://github.com/advisories/GHSA-rp65-9cf3-cjxr
fix available via `npm audit fix --force`
Will install [email protected], which is a breaking change
node_modules/svgo/node_modules/nth-check
css-select <=3.1.0
Depends on vulnerable versions of nth-check
node_modules/svgo/node_modules/css-select
svgo 1.0.0 - 1.3.2
Depends on vulnerable versions of css-select
node_modules/svgo
@svgr/plugin-svgo <=5.5.0
Depends on vulnerable versions of svgo
node_modules/@svgr/plugin-svgo
@svgr/webpack 4.0.0 - 5.5.0
Depends on vulnerable versions of @svgr/plugin-svgo
node_modules/@svgr/webpack
react-scripts >=2.1.4
Depends on vulnerable versions of @svgr/webpack
Depends on vulnerable versions of resolve-url-loader
node_modules/react-scripts
postcss <8.4.31
Severity: moderate
PostCSS line return parsing error - https://github.com/advisories/GHSA-7fh5-64p2-3v2j
fix available via `npm audit fix --force`
Will install [email protected], which is a breaking change
node_modules/resolve-url-loader/node_modules/postcss
resolve-url-loader 0.0.1-experiment-postcss || 3.0.0-alpha.1 - 4.0.0
Depends on vulnerable versions of postcss
node_modules/resolve-url-loader
8 vulnerabilities (2 moderate, 6 high)
To address all issues (including breaking changes), run:
npm audit fix --force
Solution:
These warnings will not affect your project from the user end, and thus we can just ignore them as long as our project has been compiled successfully. However, if your project run into errors and cannot be compiled smoothly, you may have installed the wrong version of node.js. Please reinstall it from here and follow the updated instructions in React-VSCode.md, which should solve the issue.
If your are interested in how this issue works, more details can be found here.
The text was updated successfully, but these errors were encountered:
Issue:
When installing
web3
or usingcreate-react-app
, warnings about vulnerabilities pop up. For example:or with more details after typing
npm audit
:Solution:
These warnings will not affect your project from the user end, and thus we can just ignore them as long as our project has been compiled successfully. However, if your project run into errors and cannot be compiled smoothly, you may have installed the wrong version of node.js. Please reinstall it from here and follow the updated instructions in React-VSCode.md, which should solve the issue.
If your are interested in how this issue works, more details can be found here.
The text was updated successfully, but these errors were encountered: