tapio / live-server

A simple development http server with live reload capability.
http://tapiov.net/live-server/
4.43k stars 484 forks source link

Event Stream Version Has Security Vulnerabilities #286

Closed FarajiA closed 5 years ago

FarajiA commented 5 years ago
Before submitting an issue, please, see https://github.com/tapio/live-server#troubleshooting

Issue description

Hey folks, it looks like the version of Event Stream you're using as a dependency has a dependency flatmap-stream that is malicious. Updating Event Stream to v4 would be best.

Thanks!

Software details

event-streamversion

vogloblinsky commented 5 years ago

Seems fixed by this commit https://github.com/tapio/live-server/commit/b5fbfe8a87c9872828ee3c09059099e4cd5d4560 and last release 1.2.1