curio-team / sdlogin

MIT License
0 stars 1 forks source link

npm package vulnerabilities #38

Closed aspdotnut closed 6 months ago

aspdotnut commented 12 months ago

There are 162 npm package vulnerabilities: 5 low, 77 moderate, 55 high, 25 critical.

Some of these have to do with XSS and command injection. I'd recommend running npm audit fix to fix most of these, and if possible review the breaking changes and updating those too.

luttje commented 6 months ago

Good catch. We'll investigate if we're actually using this package, or some other version of it.

Thanks for the heads-up