justusjonas74 / uic-918-3

Package for decoding and parsing barcodes according to UIC-918.3 specification, which are used commonly on public transport online tickets.
MIT License
39 stars 4 forks source link

RSA signature validation vulnerability #5

Closed matthiaslexer closed 3 years ago

matthiaslexer commented 3 years ago

Hi,

First, thanks for you library! Second, one of your dependencies (jsrasign) has a critical vulnerability.

https://www.npmjs.com/advisories/1672

justusjonas74 commented 3 years ago

@matthiaslexer : Thanks for using my library. I fixed that issue with v0.4.1