bitovi / ylem

Add Observable View-Models to React components
https://bitovi.github.io/ylem/
MIT License
42 stars 2 forks source link

Github banner -> Potential Security Vulnerability #166

Closed BigAB closed 6 years ago

BigAB commented 6 years ago

So, no one is going to use our library if we can't get this banner off the front page of our repo:

sec-vuln-pop-up

So, we should find the package causing this, and remove or update it so this goes away.

christopherjbaker commented 6 years ago

Did you read teh last line of the banner? =P

On a serious note though, this is caused by an old version of growl, which is used by an old version of mocha, which used by testee. See the critical section of bitovi/testee#172

justinbmeyer commented 6 years ago

I wish they could see this is a dev dep.