mff-uk / dataspecer

https://dataspecer.com
MIT License
21 stars 7 forks source link

Update packages with vulnerabilities #430

Open jakubklimek opened 6 months ago

jakubklimek commented 6 months ago

Currently, dataspecer has:

11 vulnerabilities (2 low, 2 moderate, 7 high)

The vulnerable packages need to be updated.

sstenchlak commented 6 months ago

Unfortunately, not all packages can be updated, primarily due to their dependants or because there is no newer version yet.

It also seems that the npm audit thinks that Dataspecer's cli application is a published package, which happens to be vulnerable.