benbaran / adal-angular4

Angular 4/5/6/7 ADAL Wrapper
MIT License
86 stars 104 forks source link

npm audit vulnerabilities #65

Closed vipero07 closed 6 years ago

vipero07 commented 6 years ago

There are at least 8 audit issues with the current package available on NPM. The worst offenders are two High vulnerability issues found in http-proxy-agent that allow for Denial of Service attacks. The http-proxy-agent library has been patched to version 2.2.0 to fix these known vulnerabilities. It would be worthwhile to update the package dependencies to their latest versions.

benbaran commented 6 years ago

New version published today with updated dependencies : )

Sent from my iPhone

On Jul 2, 2018, at 5:13 PM, vipero07 notifications@github.com wrote:

There are at least 8 audit issues with the current package available on NPM. The worst offenders are two High vulnerability issues found in http-proxy-agent that allow for Denial of Service attacks. The http-proxy-agent library has been patched to version 2.2.0 to fix these known vulnerabilities. It would be worthwhile to update the package dependencies to their latest versions.

— You are receiving this because you are subscribed to this thread. Reply to this email directly, view it on GitHub, or mute the thread.