activeadmin-plugins / active_admin_datetimepicker

:calendar: active_admin_datetimepicker gem
MIT License
72 stars 48 forks source link

snyk detected medium severity issue #68

Closed owen-revshop closed 9 months ago

owen-revshop commented 4 years ago

Tested 148 dependencies for known issues, found 1 issue, 1 vulnerable path.

See https://snyk.io/vuln/SNYK-RUBY-ACTIONCABLE-20338

Issues with no direct upgrade or patch:
  ✗ Information Exposure [Medium Severity][https://snyk.io/vuln/SNYK-RUBY-ACTIONCABLE-20338] in actioncable@6.0.3.3
    introduced by active_admin_datetimepicker@0.7.4 > xdan-datetimepicker-rails@2.5.4 > rails@6.0.3.3 > actioncable@6.0.3.3
  No upgrade or patch available
workgena commented 9 months ago

actioncable is a Ruby On Rails dependency. "active_admin_datetimepicker" does not use/nor include it. Update of your rails gem should help.