Skip to content
This repository has been archived by the owner on May 24, 2022. It is now read-only.

several security issues detected by retire.js #4

Closed
KaiSchwarz-cnic opened this issue Jul 6, 2017 · 2 comments
Closed

several security issues detected by retire.js #4

KaiSchwarz-cnic opened this issue Jul 6, 2017 · 2 comments

Comments

@KaiSchwarz-cnic
Copy link

KaiSchwarz-cnic commented Jul 6, 2017

retire.js check brought the following to me:

node_modules/jsdoc-oblivion/template/moment.js
↳ moment.js 2.6.0 has known vulnerabilities: severity: low; summary: reDOS - regular expression denial of service; moment/moment#2936

node_modules/jsdoc-oblivion/docs/scripts/prettify/jquery.min.js
↳ jquery 2.0.0 has known vulnerabilities: severity: medium; issue: 2432, summary: 3rd party CORS request may execute; jquery/jquery#2432 http://blog.jquery.com/2016/01/08/jquery-2-2-and-1-12-released/

node_modules/jsdoc-oblivion/template/static/scripts/prettify/jquery.min.js
↳ jquery 2.0.0 has known vulnerabilities: severity: medium; issue: 2432, summary: 3rd party CORS request may execute; jquery/jquery#2432 http://blog.jquery.com/2016/01/08/jquery-2-2-and-1-12-released/

so, please be so kind to upgrade this dependency.

Thanks!

@KaiSchwarz-cnic KaiSchwarz-cnic changed the title security issue: moment.js several security issues detected by retire.js Jul 6, 2017
@miguelmota
Copy link
Owner

@Papakai thanks for reporting!

@KaiSchwarz-cnic
Copy link
Author

KaiSchwarz-cnic commented Jul 11, 2017

@miguelmota you're welcome, thanks for fixing it

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants