cpmodel / FTT_StandAlone

Future Technology Transformation models
GNU General Public License v3.0
10 stars 1 forks source link

Security alerts #97

Open Femkemilene opened 6 months ago

Femkemilene commented 6 months ago

Not sure if you had seen the automatic emails, but GitHub doesn't like that we rely on a few older packages in package_lock.json. In particular, it wants us to update d3-color , jsuites, webpack, postcss, @babel/traverse , follow-redirects , ip and axios. All have security vulnerabilities apparently.

jp-camecon commented 5 months ago

I can look into this. It should be a few hours going through updating the packages to new versions and then checking nothing breaks.