IdentityModel / oidc-client-js

OpenID Connect (OIDC) and OAuth2 protocol support for browser-based JavaScript applications
Apache License 2.0
2.43k stars 842 forks source link

YUI vulnerabilities #1326

Closed astreiten closed 3 years ago

astreiten commented 3 years ago

We are detecting some vulnerabilities related to the YUI 2.9.0, that is being used on the latest version of oidc-client (1.11.5). Vulns list Is there any plan to fix this? Thanks

markvantilburg commented 3 years ago

Is this the same as: #1119

brockallen commented 3 years ago

Yes, dup of the above issue.

ux-engineer commented 3 years ago

https://github.com/IdentityModel/oidc-client-js/issues/743#issuecomment-848582818