Closed petetnt closed 6 years ago
The moment dependency defined in package.json has a known moderate severity security vulnerability in version range < 2.19.3 and should be updated.
https://nvd.nist.gov/vuln/detail/CVE-2017-18214
I guess it could be abused with very carefully crafted commit date but rather unlikely.
The moment dependency defined in package.json has a known moderate severity security vulnerability in version range < 2.19.3 and should be updated.
https://nvd.nist.gov/vuln/detail/CVE-2017-18214
I guess it could be abused with very carefully crafted commit date but rather unlikely.