NEEOInc / neeo-sdk

NEEO Brain SDK
https://neeoinc.github.io/neeo-sdk/
MIT License
48 stars 17 forks source link

Openpgp vulnerabilities (high severity) #192

Open jobe451 opened 4 years ago

jobe451 commented 4 years ago

I started a project based on neeo-sdk@0.53.8 and get a number of vulnerability warnings, one is labled "high severity". It seems neeo sdk depends on an outdated openpgp@2.6.2 version. Upgrade to version 4.3.0 is recommended. https://github.com/jobe451/ioBroker.neeo/network/alerts https://snyk.io/test/github/jobe451/ioBroker.neeo?tab=issues