jsdoc2md / dmd

The default output template for jsdoc2md
MIT License
38 stars 49 forks source link

NPM audit warning for marked@0.6.3 #78

Closed ashleahhill closed 4 years ago

ashleahhill commented 4 years ago

Minor issue, since this package isn't intended to run on a server, etc.

However, it's nice to see 0 vulnerabilities.

┌───────────────┬──────────────────────────────────────────────────────────────┐
│ Low           │ Regular Expression Denial of Service                         │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package       │ marked                                                       │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Patched in    │ >=0.7.0                                                      │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ jsdoc-to-markdown [dev]                                      │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path          │ jsdoc-to-markdown > dmd > marked                             │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info     │ https://npmjs.com/advisories/1076                            │
└───────────────┴──────────────────────────────────────────────────────────────┘
found 1 low severity vulnerability in 10848 scanned packages
75lb commented 4 years ago

released in dmd v4.0.1, cheers 👍