alanshaw / david-www

:eyeglasses: David helps keep your Node.js project dependencies up to date.
https://david-dm.org
MIT License
730 stars 131 forks source link

electron - 1.6.16 - vulnerability #397

Closed streetclaw closed 6 years ago

streetclaw commented 6 years ago

According to the linked node security information, the CVE and the patch notes (https://github.com/electron/electron/releases/tag/v1.6.16). Version 1.6.16 is not vulnerable to CVE-2018-1000006 (the remote code execution bug). But it is still marked as vulnerable. Can this please be fixed. Thank you.

alanshaw commented 6 years ago

Do you have a project where you're seeing this issue?

streetclaw commented 6 years ago

Yeah, I have one. It's fixed now. Thank you.