Skip to content

[npm audit] found 2 moderate severity vulnerabilities => need a package update #47

@fabien-h

Description

@fabien-h

Hi, the audit on the plugin gives that couple of errors:

Could you consider a package update ?

For the future, you could use https://greenkeeper.io/. It takes care of continuously update your dependencies and warns you if it breaks some tests.

Moderate        Regular Expression Denial of Service
Package         semver
Patched in      >=4.3.2
Dependency of   rollup-plugin-node-builtins [dev]
Path            rollup-plugin-node-builtins > browserify-fs > levelup > semver
More info       https://nodesecurity.io/advisories/31


Moderate        Memory Exposure
Package         bl
Patched in      >=0.9.5 <1.0.0 || >=1.0.1
Dependency of   rollup-plugin-node-builtins [dev]
Path            rollup-plugin-node-builtins > browserify-fs > levelup > bl
More info       https://nodesecurity.io/advisories/596

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions