plangrid / react-file-viewer

MIT License
534 stars 341 forks source link

Update pdfjs-dist and mammoth dependencies to the latest versions #132

Open aawaken opened 4 years ago

aawaken commented 4 years ago

Hello,

do you have any plans to update pdfjs-dist and mammoth to the latest one? The currently used versions are 2,5 years old and might have a plenty of security issues.

Best Andre

MorleyB commented 4 years ago

There is a Cross-site Scripting (XSS) vulnerability for the referenced pdf.js version. https://snyk.io/vuln/SNYK-JS-PDFJSDIST-469200