Skip to content

Parseuri dependancy issue #7

@alan-carpenter

Description

@alan-carpenter

I ran an audit via npm and came up with this

npm audit report

parseuri <2.0.0
Severity: moderate
parse-uri Regular expression Denial of Service (ReDoS) - GHSA-6fx8-h7jm-663j
No fix available
node_modules/parseuri
engine.io-client 1.0.2 - 6.1.1
Depends on vulnerable versions of parseuri
node_modules/engine.io-client
socket.io-client 1.0.0-pre - 4.4.1
Depends on vulnerable versions of engine.io-client
Depends on vulnerable versions of parseuri
node_modules/socket.io-client
@webhooksite/cli *
Depends on vulnerable versions of socket.io-client
node_modules/@webhooksite/cli

4 moderate severity vulnerabilities

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions