Skip to content

Instantly share code, notes, and snippets.

@Verthon
Created December 16, 2019 10:00
Show Gist options
  • Save Verthon/c3265ff82efc06531628aeed7014ef94 to your computer and use it in GitHub Desktop.
Save Verthon/c3265ff82efc06531628aeed7014ef94 to your computer and use it in GitHub Desktop.
=== npm audit security report ===
# Run npm install @angular/compiler-cli@8.2.14 to resolve 1 vulnerability
SEMVER WARNING: Recommended action is a potentially breaking change
┌───────────────┬──────────────────────────────────────────────────────────────┐
│ Low │ Regular Expression Denial of Service │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package │ braces │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ @angular/compiler-cli │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path │ @angular/compiler-cli > chokidar > anymatch > micromatch > │
│ │ braces │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info │ https://nodesecurity.io/advisories/786 │
└───────────────┴──────────────────────────────────────────────────────────────┘
┌──────────────────────────────────────────────────────────────────────────────┐
│ Manual Review │
│ Some vulnerabilities require your attention to resolve │
│ │
│ Visit https://go.npm.me/audit-guide for additional guidance │
└──────────────────────────────────────────────────────────────────────────────┘
┌───────────────┬──────────────────────────────────────────────────────────────┐
│ Low │ Denial of Service │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package │ mem │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Patched in │ >=4.0.0 │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ @ionic/app-scripts [dev] │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path │ @ionic/app-scripts > webpack > yargs > os-locale > mem │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info │ https://nodesecurity.io/advisories/1084 │
└───────────────┴──────────────────────────────────────────────────────────────┘
found 2 low severity vulnerabilities in 7372 scanned packages
1 vulnerability requires semver-major dependency updates.
1 vulnerability requires manual review. See the full report for details.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment