LouisBarranqueiro / hexo-theme-tranquilpeak

:lipstick: A gorgeous responsive theme for Hexo blog framework
https://louisbarranqueiro.github.io/hexo-theme-tranquilpeak/
GNU General Public License v3.0
1.86k stars 484 forks source link

JS Library need update - security issue #651

Closed tienhm0202 closed 4 years ago

tienhm0202 commented 4 years ago

Description

I run Lighthouse in Chrome Dev Tool and its report like this. I think some JS library need updated Imgur

Expected behavior

It make Google score my site lower. I want to know how to update these library without break theme.

Steps to reproduce the bug

Run Lighthouse Audit in Chrome

Environment

├── hexo@3.9.0
├── hexo-algoliasearch@0.4.2
├── hexo-cli@2.0.0
├── hexo-deployer-git@2.1.0
├── hexo-fs@2.0.0
├── hexo-generator-archive@0.1.5
├── hexo-generator-category@0.1.3
├── hexo-generator-feed@1.2.2
├── hexo-generator-index@0.2.1
├── hexo-generator-seo-friendly-sitemap@0.0.25
├── hexo-generator-tag@0.2.0
├── hexo-lazyload-image@1.0.7
├── hexo-migrator-wordpress@0.1.2
├── hexo-oembed@0.1.6
├── hexo-pwa@0.1.3
├── hexo-renderer-ejs@0.3.1
├── hexo-renderer-marked@0.2.11
├── hexo-renderer-stylus@0.3.3
├── hexo-server@0.2.2
└─┬ UNMET DEPENDENCY hexo-web-push-notification@0.2.2
  ├── hexo-fs@2.0.0
  ├── hexo-util@1.9.0
  └── node-fetch@2.6.0

Additional information

LouisBarranqueiro commented 4 years ago

👋 @tienhm0202 , I will release a new version soon with the latest jQuery version: v3.5.1

LouisBarranqueiro commented 4 years ago

the fix is included in this commit https://github.com/LouisBarranqueiro/hexo-theme-tranquilpeak/commit/5f5bab3a63e96722fb03cece0a70783a12c7bb65