danielgtaylor / danielgtaylor/aglio

Dependencies with known vulnerabilities

Open
#346 3 comments 2 reactions 1 assignee Claimed by @Gasol View on GitHub
Dominant language
CoffeeScript
Stars
4.7k
Forks
471
PR merge metrics
No merged PRs in 30d

Description

nsp plugin reports following vulnerable dependencies:

aglio@2.3.0 > aglio-theme-olio@1.6.3 > jade@1.11.0 > transformers@2.1.0 > uglify-js@2.2.5

aglio@2.3.0 > socket.io@1.7.4 > socket.io-client@1.7.4 > engine.io-client@1.8.4 > ws@1.1.2

aglio@2.3.0 > chokidar@1.7.0 > fsevents@1.1.3 > node-pre-gyp@0.6.39 > tar@2.2.1 > fstream@1.0.11 > rimraf@2.6.2 > glob@7.1.2 > minimatch@0.3.0

aglio@2.3.0 > socket.io@1.7.4 > engine.io@1.8.4 > ws@1.1.4

aglio@2.3.0 > aglio-theme-olio@1.6.3 > stylus@0.51.1 > glob@3.2.11 > minimatch@0.3.0

aglio@2.3.0 > socket.io@1.7.4 > socket.io-client@1.7.4 > engine.io-client@1.8.4 > parsejson@0.0.3

aglio@2.3.0 > aglio-theme-olio@1.6.3 > markdown-it-anchor@2.7.1 > string@3.3.3

aglio@2.3.0 > aglio-theme-olio@1.6.3 > jade@1.11.0 > transformers@2.1.0 > uglify-js@2.2.5

aglio@2.3.0 > socket.io@1.7.4 > socket.io-parser@2.3.1 > debug@2.2.0

aglio@2.3.0 > socket.io@1.7.4 > debug@2.3.3

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.