Closed lichutin-st closed 4 years ago
Hello!
Current version of "node-signpdf" refers to vulnerable "node-forge" version. Can you change it to avoid vulnerabilities?
Screen from npm audit
npm audit
Hi, we will update this dep during the next release. Please see the notes how we handle vulnerabilities here https://github.com/jsreport/jsreport#vulnerabilities
Hello!
Current version of "node-signpdf" refers to vulnerable "node-forge" version. Can you change it to avoid vulnerabilities?
Screen from
npm audit