nikhilmodak / gulp-ngdocs

Gulp plugin for building angularJS documentation
MIT License
95 stars 63 forks source link

dependency triggers a "security vulnerability warning" #126

Open chickahoona opened 6 years ago

chickahoona commented 6 years ago

I just received a warning from github for the marked package (in version 0.3.2). After checking its coming from gulp-ngdocs.

A screenshot of the mail: https://img3.picload.org/image/ddarpgci/capture.png

Version 0.3.4 seems not to be affected.

Would it be possible that you upgrade that dependency?

chickahoona commented 6 years ago

I just received another mail for a "high severity" security vulnerability, for the same package, just one version higher.

https://img3.picload.org/image/ddarprgw/capture.png