auth0 / node-saml

SAML assertion creation for node
MIT License
70 stars 91 forks source link

npm reports high vulnerabilities for moment and async #86

Open madzim opened 2 years ago

madzim commented 2 years ago

Description

NPM is reporting high vulnerabilities with the moment and async dependencies.

This module depends on moment@2.19.3 and async@~0.2.9

moment

async

madzim commented 2 years ago

PR: https://github.com/auth0/node-saml/pull/87

RopoMen commented 2 years ago

After this fix, update your package https://github.com/auth0/node-samlp as well. There is now three vulnerabilities; moment, async and ejs.