We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
This issue provides visibility into Lalaps updates and their statuses.
minimatch ReDoS vulnerability Library: minimatch Affected versions: <3.0.5 Severity: high ✔️ #92 ✔️ #68 Root Libraries:
minimatch
<3.0.5
decode-uri-component vulnerable to Denial of Service (DoS) Library: decode-uri-component Affected versions: <=0.2.0 Severity: low Root Libraries:
decode-uri-component
<=0.2.0
danger
semantic-release-telegram
Authorization Bypass in parse-path Library: parse-path Affected versions: <5.0.0 Severity: high ✔️ #92 ✔️ #68 Root Libraries:
parse-path
<5.0.0
parse-url parses http URLs incorrectly, making it vulnerable to host name spoofing Library: parse-url Affected versions: <8.1.0 Severity: moderate ✔️ #92 ✔️ #68 Root Libraries:
parse-url
<8.1.0
Last Updated: 01 Dec 2022, at 01:12 UTC
The text was updated successfully, but these errors were encountered:
No branches or pull requests
This issue provides visibility into Lalaps updates and their statuses.
npm
minimatch ReDoS vulnerability
Library:
minimatch
Affected versions:
<3.0.5
Severity: high
✔️ #92
✔️ #68
Root Libraries:
decode-uri-component vulnerable to Denial of Service (DoS)
Library:
decode-uri-component
Affected versions:
<=0.2.0
Severity: low
Root Libraries:
danger
semantic-release-telegram
Chore: fixes some npm audit vulnerabilities #92 Chore: fixes some npm audit vulnerabilities #68Authorization Bypass in parse-path
Library:
parse-path
Affected versions:
<5.0.0
Severity: high
✔️ #92
✔️ #68
Root Libraries:
semantic-release-telegram
Chore: fixes some npm audit vulnerabilities #92 Chore: fixes some npm audit vulnerabilities #68parse-url parses http URLs incorrectly, making it vulnerable to host name spoofing
Library:
parse-url
Affected versions:
<8.1.0
Severity: moderate
✔️ #92
✔️ #68
Root Libraries:
semantic-release-telegram
Chore: fixes some npm audit vulnerabilities #92 Chore: fixes some npm audit vulnerabilities #68Last Updated: 01 Dec 2022, at 01:12 UTC
The text was updated successfully, but these errors were encountered: