OpenConext / OpenConext-engineblock

OpenConext SAML 2.0 IdP/SP Gateway
14 stars 22 forks source link

Install npm security updates #1471

Closed phavekes closed 4 days ago

phavekes commented 4 days ago

This issue is imported from pivotal - Originaly created at Jun 26, 2018 by Joris Steyn

@OpenConext     OpenConext/OpenConext-engineblock

Known moderate severity security vulnerability detected in qs < 1.0.0 defined in package-lock.json. package-lock.json update suggested: qs ~> 1.0.0.

phavekes commented 4 days ago

npm audit showed additional vulnerabilities in other packages. These have all been addressed in this PR: https://github.com/OpenConext/OpenConext-engineblock/pull/556. Attached is the audit log. (Michiel Kodde - Jun 29, 2018)