Skip to content
This repository has been archived by the owner on Aug 19, 2022. It is now read-only.

Snyk reported vulnerabilities #459

Closed
mihaidma opened this issue Feb 15, 2018 · 5 comments
Closed

Snyk reported vulnerabilities #459

mihaidma opened this issue Feb 15, 2018 · 5 comments
Assignees

Comments

@mihaidma
Copy link
Contributor

Investigate and fix the Snyk reported vulnerabilities: https://snyk.io/test/github/nearform/udaru?severity=high&severity=medium&severity=low

@mcollina
Copy link
Contributor

The fix for this would be to migrate to Hapi v17. I would actually wait for this hapijs/hoek#230 to be solved.

@mihaidma
Copy link
Contributor Author

Thank you for the input, yes upgrading to v17 is not an option right now.

@cianfoley-nearform
Copy link
Contributor

I updated lodash in my last pull request, it should sort the second Snyk issue :-)

@mcollina
Copy link
Contributor

mcollina commented Feb 15, 2018

First one is resolved, Snyk would be updated shortly, last Hoek in the 4.x.x line solves the issue.

@cianfoley-nearform
Copy link
Contributor

pbac updated too, in pull request... only issue here is the context stuff that @dberesford mentioned, tests seem to be passing, but we will need to investigate usage of context with variables, it might be that we're not handling correctly or testing scenarios

@dberesford dberesford added this to backlog in Udaru Mar 8, 2018
@dberesford dberesford removed this from backlog in Udaru Mar 8, 2018
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants