justadudewhohacks / npm-opencv-build

A simple script to auto build recent OpenCV + contrib version via npm
43 stars 57 forks source link

High Severity Vulnerabilities #51

Open jmanring opened 2 years ago

jmanring commented 2 years ago

Please update to use ansi-regex 4.1.1, 5.0.1 or 6.0.1

✗ Regular Expression Denial of Service (ReDoS) [High Severity][https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908] in ansi-regex@2.1.1 introduced by opencv-build@0.1.9 > npmlog@4.1.2 > gauge@2.7.4 > strip-ansi@3.0.1 > ansi-regex@2.1.1 and 8 other path(s) This issue was fixed in versions: 4.1.1, 5.0.1, 6.0.1