Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[ionic v4 with angular] Security Vulnerability - hoek 2.16.3 - in package-lock.json #14920

Closed
gigocabrera opened this issue Jul 28, 2018 · 2 comments
Labels

Comments

@gigocabrera
Copy link

Bug Report

Ionic Info
Run ionic info from a terminal/cmd prompt and paste the output below.

Ionic:

   ionic (Ionic CLI)          : 4.0.1 (/usr/local/lib/node_modules/ionic)
   Ionic Framework            : @ionic/angular 4.0.0-beta.0
   @angular-devkit/core       : 0.7.0
   @angular-devkit/schematics : 0.7.0
   @angular/cli               : 6.1.0
   @ionic/ng-toolkit          : 1.0.0
   @ionic/schematics-angular  : 1.0.1

Cordova:

   cordova (Cordova CLI) : 7.1.0
   Cordova Platforms     : none

System:

   ios-deploy : 1.9.2
   NodeJS     : v8.11.3 (/usr/local/bin/node)
   npm        : 6.2.0
   OS         : macOS High Sierra
   Xcode      : Xcode 9.4.1 Build version 9F2000

Describe the Bug
My github repo is displaying the following warning

We found a potential security vulnerability in one of your dependencies.
A dependency defined in package-lock.json has known security vulnerabilities and should be updated.

Steps to Reproduce
Steps to reproduce the behavior:

  1. npm install -g ionic
  2. ionic start myApp tabs --type=angular
  3. npm i
  4. Search for hoek version 2.16.3 in the package-lock.json
@ionitron-bot ionitron-bot bot added the triage label Jul 28, 2018
@gigocabrera gigocabrera changed the title Security Vulnerability - hoek 2.16.3 - in package-lock.json [ionic v4 with angular] Security Vulnerability - hoek 2.16.3 - in package-lock.json Jul 28, 2018
@CyberBLN
Copy link

ionic-team/ionic-app-scripts#1493 will fix this

@ionitron-bot
Copy link

ionitron-bot bot commented Dec 17, 2018

Thanks for the issue! This issue is being locked to prevent comments that are not relevant to the original issue. If this is still an issue with the latest version of Ionic, please create a new issue and ensure the template is fully filled out.

@ionitron-bot ionitron-bot bot locked and limited conversation to collaborators Dec 17, 2018
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
Projects
None yet
Development

No branches or pull requests

2 participants