feathericons / feather

Simply beautiful open-source icons
https://feathericons.com
MIT License
24.65k stars 1.21k forks source link

OWASP ZAP found eval function dangerous #1170

Open nd3w opened 1 year ago

nd3w commented 1 year ago

After a pentest using OWASP ZAP reported to find "eval" in file feather.min.js, which according to it, it's a dangerous JS function. To see that it also included in CDN version of feathericons in cloudflare and any other CDN provider, how can I convince my client that using feathericons is safe?