Open gecko655 opened 3 years ago
chrono-node CVE-2021-23371: https://snyk.io/vuln/SNYK-JS-CHRONONODE-1083228
I would like to update chrono-node to v2.2.4 or higher, due to a vulnerability about a DoS attack issue.
Chrono-node v2 has breaking changes, which is critical for this textlint rule.
For Users Chrono’s default now handles only international English. While in the previous version, it tried to parse with all known languages. The current fully supported languages are en, ja, and fr (de and pt are partially supported). Other languages from v1 (nl and zh) are under development. https://github.com/wanasit/chrono#whats-changed-in-the-v2
For Users
en
ja
fr
de
pt
nl
zh
So, following things have to be done to update chrono-node to v2.x:
es
(If you find it's not necessary, it's fine to just close this issue.) (一旦Issueを立てましたが、必要ないようであればそのまま閉じていただいて構いません。)
Thanks for the report! We need to update the module
Any progress on this?
Started PR #13 but I am stuck.
Thanks. I'll look it in weekend.
chrono-node CVE-2021-23371: https://snyk.io/vuln/SNYK-JS-CHRONONODE-1083228
I would like to update chrono-node to v2.2.4 or higher, due to a vulnerability about a DoS attack issue.
Chrono-node v2 has breaking changes, which is critical for this textlint rule.
So, following things have to be done to update chrono-node to v2.x:
es
(Spanish) that is not supported by chrono-node v2.x.(If you find it's not necessary, it's fine to just close this issue.) (一旦Issueを立てましたが、必要ないようであればそのまま閉じていただいて構いません。)