sudomesh / peoplesopen-front

Front landing page for the peoplesopen.net website.
https://peoplesopen.net
MIT License
17 stars 24 forks source link

markedjs vulnerability #13

Closed paidforby closed 6 years ago

paidforby commented 6 years ago

Recent update to using gulp method of building peoplesopen-front as a static site produced a vulnerability with a npm package named markedjs. Update to newer version in package.json and test build process.

jnny commented 6 years ago

updated package.json with current versions of marked and gulp-sass, updated node-sass, converted package-lock.json to npm-shrinkwrap.json, and successfully rebuilt. security warnings no longer appear. closin'!