ONSdigital / design-team

An empty repository as the hub for design team tickets (Issues).
0 stars 0 forks source link

[TASK] Resolve dependencies with security vulnerabilities in GitHub #211

Closed MagdalenaLarge closed 6 days ago

MagdalenaLarge commented 2 months ago

We received alert from the GitHub that our Repository has vulnerable dependencies.

They are listed under this link.

We need to address the issues and resolved them.

precious-onyenaucheya-ons commented 3 weeks ago

Axios Update Blockers:

wait-on: This is a transitive dependency of jest-dev-server, which is used by jest-environment-puppeteer within jest-puppeteer. Since jest-dev-server hasn’t updated wait-on, upgrading Axios is currently blocked.

ws and cookie Update Blockers:

browser-sync: This dependency relies on socket.io, which is used by ws. However, browser-sync has not updated socket.io to the latest version (4.8.1), preventing us from updating ws until this dependency is updated.