TritonDataCenter / dragnet

event stream analysis
MIT License
11 stars 4 forks source link

outstanding vulnerability #40

Open karenetheridge opened 5 years ago

karenetheridge commented 5 years ago

github complains weekly about https://github.com/joyent/dragnet/network/alerts:

Warning!    
joyent / dragnet

Known security vulnerabilities detected
Dependency tar  Version < 2.0.0     Upgrade to ~> 2.0.0
Vulnerabilities
CVE-2015-8860 Moderate severity
    Defined in package.json     
Dependency semver   Version < 4.3.2     Upgrade to ~> 4.3.2
Vulnerabilities
CVE-2015-8855 High severity
    Defined in package.json     
karenetheridge commented 5 years ago

Github continues to send nag emails weekly.

https://github.com/joyent/dragnet/network/alerts