Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Medium severity vulnerability found on [email protected] #108

Closed
motss opened this issue Apr 26, 2017 · 2 comments
Closed

Medium severity vulnerability found on [email protected] #108

motss opened this issue Apr 26, 2017 · 2 comments

Comments

@motss
Copy link

motss commented Apr 26, 2017

Description

Vulnerability found on one of the dependencies: brace-expansion and the author has released a patch for it. See brace-expansion fixed ReDoS.

More info: https://snyk.io/vuln/npm:brace-expansion:20170302

Related issues:

#106

@plynchnlm
Copy link

Minimatch 3.0.3 already specifies:

"brace-expansion": "^1.0.0"

so it should pick up the new version. Do "npm uninstall brace-expansion" and reinstall.

@motss
Copy link
Author

motss commented May 4, 2017

Should have fixed

@motss motss closed this as completed May 4, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants