Closed snyk-community closed 8 years ago
node-metainspector currently has a 2 vulnerable dependency paths, introducing 2 different types of known vulnerabilities.
This PR fixes vulnerable dependencies, remote memory exposure vulnerability in the request dependency and ReDos vulnerability in the hawk dependency.
request
hawk
You can see Snyk test report of this project for details.
This PR changes Package.json to upgrade request to the newer 2.74.0 version, and will fix the vulnerabilities.
Package.json
You can get alerts and fix PRs for future vulnerabilities for free by watching this repo with Snyk.
Stay Secure, The Snyk Team
node-metainspector currently has a 2 vulnerable dependency paths, introducing 2 different types of known vulnerabilities.
This PR fixes vulnerable dependencies, remote memory exposure vulnerability in the
request
dependency and ReDos vulnerability in thehawk
dependency.You can see Snyk test report of this project for details.
This PR changes
Package.json
to upgraderequest
to the newer 2.74.0 version, and will fix the vulnerabilities.You can get alerts and fix PRs for future vulnerabilities for free by watching this repo with Snyk.
Stay Secure, The Snyk Team