marcialwushu / EventosTI

:date: Evento de TI - Ionic 4 Application
https://marcialwushu.github.io/EventosTI/
1 stars 1 forks source link

=== npm audit security report === #1

Open marcialwushu opened 4 years ago

marcialwushu commented 4 years ago
C:\Users\<user>\Documents\Workspace\ionic\PROJECTS\eventos>npm audit

                       === npm audit security report ===

# Run  npm install --save-dev @angular-devkit/build-angular@0.803.21  to resolve 2 vulnerabilities

  Moderate        Cross-Site Scripting

  Package         serialize-javascript

  Dependency of   @angular-devkit/build-angular [dev]

  Path            @angular-devkit/build-angular > copy-webpack-plugin >
                  serialize-javascript

  More info       https://npmjs.com/advisories/1426

  Moderate        Cross-Site Scripting

  Package         serialize-javascript

  Dependency of   @angular-devkit/build-angular [dev]

  Path            @angular-devkit/build-angular > terser-webpack-plugin >
                  serialize-javascript

  More info       https://npmjs.com/advisories/1426

# Run  npm update terser-webpack-plugin --depth 3  to resolve 1 vulnerability

  Moderate        Cross-Site Scripting

  Package         serialize-javascript

  Dependency of   @angular-devkit/build-angular [dev]

  Path            @angular-devkit/build-angular > webpack >
                  terser-webpack-plugin > serialize-javascript

  More info       https://npmjs.com/advisories/1426

found 3 moderate severity vulnerabilities in 17247 scanned packages
  run `npm audit fix` to fix 3 of them.

C:\Users\<usesr>\Documents\Workspace\ionic\PROJECTS\eventos>npm audit fix

> core-js@3.2.1 postinstall C:\Users\<user>\Documents\Workspace\ionic\PROJECTS\eventos\node_modules\@angular-devkit\build-angular\node_modules\core-js
> node scripts/postinstall || echo "ignore"

Thank you for using core-js ( https://github.com/zloirock/core-js ) for polyfilling JavaScript standard library!

The project needs your help! Please consider supporting of core-js on Open Collective or Patreon:
> https://opencollective.com/core-js
> https://www.patreon.com/zloirock
marcialwushu commented 4 years ago
 run `npm audit fix` to fix 3 of them.

C:\Users\carlosjunior\Documents\Workspace\ionic\UNIGRANDE-PROJECTS\eventos>npm audit fix

> core-js@3.2.1 postinstall C:\Users\<user>\Documents\Workspace\ionic\PROJECTS\eventos\node_modules\@angular-devkit\build-angular\node_modules\core-js
> node scripts/postinstall || echo "ignore"

Thank you for using core-js ( https://github.com/zloirock/core-js ) for polyfilling JavaScript standard library!

The project needs your help! Please consider supporting of core-js on Open Collective or Patreon:
> https://opencollective.com/core-js
> https://www.patreon.com/zloirock

Also, the author of core-js ( https://github.com/zloirock ) is looking for a good job -)

npm WARN karma-jasmine-html-reporter@1.5.1 requires a peer of jasmine-core@>=3.5 but none is installed. You must install peer dependencies yourself.
npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.11 (node_modules\webpack-dev-server\node_modules\fsevents):
npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.11: wanted {"os":"darwin","arch":"any"} (current: {"os":"win32","arch":"x64"})
npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.11 (node_modules\watchpack\node_modules\fsevents):
npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.11: wanted {"os":"darwin","arch":"any"} (current: {"os":"win32","arch":"x64"})
npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.11 (node_modules\@angular\compiler-cli\node_modules\fsevents):
npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.11: wanted {"os":"darwin","arch":"any"} (current: {"os":"win32","arch":"x64"})
npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.11 (node_modules\karma\node_modules\fsevents):
npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.11: wanted {"os":"darwin","arch":"any"} (current: {"os":"win32","arch":"x64"})
npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@2.1.2 (node_modules\fsevents):
npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@2.1.2: wanted {"os":"darwin","arch":"any"} (current: {"os":"win32","arch":"x64"})

+ @angular-devkit/build-angular@0.803.21
added 126 packages from 68 contributors, removed 8 packages and updated 33 packages in 129.738s
fixed 3 of 3 vulnerabilities in 17247 scanned packages