Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GitHub flagging gulp-sass because of downstream hoek dependency. #3

Closed
theenoahmason opened this issue May 1, 2018 · 1 comment
Closed
Assignees
Labels
blocking This issue is being blocked by another factor dependency This issue is related to a dependency

Comments

@theenoahmason
Copy link
Member

theenoahmason commented May 1, 2018

GitHub is flagging projects with gulp-sass/node-sass because of a downstream outdated hoek dependency; Will update when patched.

Note that this is only happening if the user is subscribed to vulnerability notifications on the repo, and will only happen if the entire package-lock.json file is uploaded to the repo.

When will this be fixed?

Once node-sass updates, gulp-sass will update. We are monitoring both and will update as soon as they do.

View the following issues for more information:
node-sass: sass/node-sass#2355
gulp-sass: dlmanning/gulp-sass#687

@theenoahmason theenoahmason added dependency This issue is related to a dependency blocking This issue is being blocked by another factor labels May 1, 2018
@theenoahmason theenoahmason self-assigned this May 1, 2018
@theenoahmason theenoahmason changed the title GitHub is flagging projects with gulp-sass/node-sass because of a downstream outdated hoek dependency. GitHub flagging gulp-sass/node-sass because of downstream hoek dependency. May 1, 2018
@theenoahmason theenoahmason changed the title GitHub flagging gulp-sass/node-sass because of downstream hoek dependency. GitHub flagging gulp-sass because of downstream hoek dependency. May 1, 2018
@theenoahmason
Copy link
Member Author

This seems to be all fixed. Closing for now.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
blocking This issue is being blocked by another factor dependency This issue is related to a dependency
Development

No branches or pull requests

1 participant