Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability in dependencies #111

Open
ahsane opened this issue Feb 5, 2019 · 0 comments
Open

Vulnerability in dependencies #111

ahsane opened this issue Feb 5, 2019 · 0 comments

Comments

@ahsane
Copy link

ahsane commented Feb 5, 2019

=== npm audit security report ===

                             Manual Review
         Some vulnerabilities require your attention to resolve

      Visit https://go.npm.me/audit-guide for additional guidance

Moderate Prototype pollution

Package hoek

Patched in > 4.2.0 < 5.0.0 || >= 5.0.3

Dependency of node-readability

Path node-readability > request > hawk > boom > hoek

More info https://nodesecurity.io/advisories/566

Moderate Prototype pollution

Package hoek

Patched in > 4.2.0 < 5.0.0 || >= 5.0.3

Dependency of node-readability

Path node-readability > request > hawk > cryptiles > boom > hoek

More info https://nodesecurity.io/advisories/566

Moderate Prototype pollution

Package hoek

Patched in > 4.2.0 < 5.0.0 || >= 5.0.3

Dependency of node-readability

Path node-readability > request > hawk > hoek

More info https://nodesecurity.io/advisories/566

Moderate Prototype pollution

Package hoek

Patched in > 4.2.0 < 5.0.0 || >= 5.0.3

Dependency of node-readability

Path node-readability > request > hawk > sntp > hoek

More info https://nodesecurity.io/advisories/566

Moderate Remote Memory Exposure

Package request

Patched in >=2.68.0

Dependency of node-readability

Path node-readability > request

More info https://nodesecurity.io/advisories/309

Moderate Memory Exposure

Package tunnel-agent

Patched in >=0.6.0

Dependency of node-readability

Path node-readability > request > tunnel-agent

More info https://nodesecurity.io/advisories/598

Moderate Regular Expression Denial of Service

Package mime

Patched in >= 1.4.1 < 2.0.0 || >= 2.0.3

Dependency of node-readability

Path node-readability > request > form-data > mime

More info https://nodesecurity.io/advisories/535

Moderate Regular Expression Denial of Service

Package hawk

Patched in >=3.1.3 < 4.0.0 || >=4.1.1

Dependency of node-readability

Path node-readability > request > hawk

More info https://nodesecurity.io/advisories/77

@ahsane ahsane changed the title Venerability in dependencies Vulnerability in dependencies Feb 5, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant