Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update cucumber to fix npm audit issues #30

Open
Phoscur opened this issue Jan 26, 2019 · 0 comments
Open

Update cucumber to fix npm audit issues #30

Phoscur opened this issue Jan 26, 2019 · 0 comments

Comments

@Phoscur
Copy link

Phoscur commented Jan 26, 2019

  Critical        Potential Command Injection                                   
                                                                                
  Package         shell-quote                                                   
                                                                                
  Patched in      >=1.6.1                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > shell-quote          
                                                                                
  More info       https://nodesecurity.io/advisories/117                        
                                                                                
                                                                                
  Low             Incorrect Handling of Non-Boolean Comparisons During          
                  Minification                                                  
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >= 2.4.24                                                     
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > ruglify > uglify-js                                         
                                                                                
  More info       https://nodesecurity.io/advisories/39                         
                                                                                
                                                                                
  Low             Incorrect Handling of Non-Boolean Comparisons During          
                  Minification                                                  
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >= 2.4.24                                                     
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > ruglify >      
                  uglify-js                                                     
                                                                                
  More info       https://nodesecurity.io/advisories/39                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > ruglify > uglify-js                                         
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > ruglify >      
                  uglify-js                                                     
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > uglify-js                                                   
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > uglify-js      
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > pogo > uglify-js                  
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  High            Regular Expression Denial of Service                          
                                                                                
  Package         minimatch                                                     
                                                                                
  Patched in      >=3.0.2                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > glob > minimatch     
                                                                                
  More info       https://nodesecurity.io/advisories/118        

Moderate        Regular Expression Denial of Service                          
                                                                                
  Package         underscore.string                                             
                                                                                
  Patched in      >=3.3.5                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > underscore.string                 
                                                                                
  More info       https://nodesecurity.io/advisories/745      
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant