Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Examples directory of the repository is part of the NPM package #55

Closed
jfcere opened this issue Apr 21, 2020 · 3 comments
Closed

Examples directory of the repository is part of the NPM package #55

jfcere opened this issue Apr 21, 2020 · 3 comments

Comments

@jfcere
Copy link

jfcere commented Apr 21, 2020

Hi there,

Thanks for the library, ASCII art ftw 😄

That being said, my vulnerability check reported a problem with figlet because it found an old version of jQuery that has been flagged for security issues. I was surprised at first because I thought that the library has no dependency on jQuery but after inspecting the node_modules/figlet directory I noticed that the folder examples that contain jQuery is part of the NPM package.

Is there any plan to remove the examples folder from the distributed package?

image

@patorjk
Copy link
Owner

patorjk commented Apr 21, 2020 via email

@patorjk
Copy link
Owner

patorjk commented Apr 26, 2020

Sorry, I was confused when I posted my first response (I was thinking of a little used font preloading function, but it doesn't cause jquery to be included). You were correct. I've refactored the example to not use jQuery so it's no longer included. Thanks for reporting this!

@patorjk patorjk closed this as completed Apr 26, 2020
@jfcere
Copy link
Author

jfcere commented Apr 27, 2020

@patorjk Thanks a lot, WhiteSource doesn't report the vulnerability anymore 👍

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants