apigee-127 / swagger-tools

A Node.js and browser module that provides tooling around Swagger.
MIT License
701 stars 373 forks source link

Update superagent version due to sec vulnerability #545

Open ttrabold opened 6 years ago

ttrabold commented 6 years ago

The used superagent version has a Large gzip Denial of Service vulnerability. See: https://nodesecurity.io/advisories/superagent_large-gzip-denial-of-service

googlebot commented 6 years ago

Thanks for your pull request. It looks like this may be your first contribution to a Google open source project. Before we can look at your pull request, you'll need to sign a Contributor License Agreement (CLA).

:memo: Please visit https://cla.developers.google.com/ to sign.

Once you've signed, please reply here (e.g. I signed it!) and we'll verify. Thanks.


ttrabold commented 6 years ago

I signed it!

googlebot commented 6 years ago

CLAs look good, thanks!

mastermatt commented 6 years ago

https://nodesecurity.io/advisories/479 can be removed from .nsprc along with this patch.

erathinam commented 5 years ago

Will this be merged ?? The current stable version of superagent is 5.1.0