Level / abstract-leveldown

An abstract prototype matching the leveldown API.
MIT License
146 stars 53 forks source link

Check likely false positive vulnerabilities in devDependencies #384

Closed jzombie closed 2 years ago

jzombie commented 2 years ago

Noticed some high / critical vulnerabilities in the airtap package you're using.

2021-11-01_11-12

vweevers commented 2 years ago

Renamed to not scare everyone.

vweevers commented 2 years ago

The vulnerability in hallmark is fixed by https://github.com/Level/abstract-leveldown/commit/6ab33b28df00dcaaa63ac16b80ef49465b81f17b.

The vulnerabilities in airtap are already tracked in https://github.com/airtap/airtap/issues/312 (and stuck on https://github.com/airtap/airtap/pull/317#issuecomment-946978873).