-
Notifications
You must be signed in to change notification settings - Fork 46
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
17 security issues #4
Comments
|
Hi, Thanks for notifying us. We are working on BS5 at this moment, so we will check if these issues are resolve after that or not. |
@codedthemes any news on this? |
Not yet. This is in our backlog and we will work on it. In the meantime, if you wanna fix it and create PR, I can appreciate it. |
no clue how to , sorry |
We have given an update, please check if that works for you. the issues has been reduced from 94 to 22 at this point. |
@codedthemes ty for the fix! |
ansi-html
1 ansi-html vulnerability found in package-lock.json 5 days ago
Remediation
No patched version is available.
Details
CVE-2021-23424
high severity
Vulnerable versions: <= 0.0.7
Patched version: No fix
This affects all versions of package ansi-html. If an attacker provides a malicious string, it will get stuck processing the input for an extremely long time.
and I found many other security issues you should attend and fix, thank you!
The text was updated successfully, but these errors were encountered: