Skip to content
This repository has been archived by the owner on Oct 1, 2020. It is now read-only.

Vulnerabilities #299

Open
ScarletLovell opened this issue May 8, 2018 · 1 comment
Open

Vulnerabilities #299

ScarletLovell opened this issue May 8, 2018 · 1 comment

Comments

@ScarletLovell
Copy link

When using NPM i with electron-prebuilt-compile as a depend in my package.json, it follows up with these vulnerabilities


hoek has 4 errors on Prototype pollution
https://nodesecurity.io/advisories/566

uglify-js has Incorrect Handling of Non-Boolean Comparisons During Minification & Regular Expression Denial of Service
https://nodesecurity.io/advisories/39

Both seem to be through the electron-compilers nested depend

@walterjohan
Copy link

I get the same, is there any chance that these packages will be updated, or can we do that manually without breaking anything?

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants