-
Notifications
You must be signed in to change notification settings - Fork 2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Upgrade version of prompt to 1.2.1 to get rid of rogue colors package #7201
Closed
dhwaneetbhatt opened this issue
Jan 10, 2022
· 2 comments
· May be fixed by FalconSocial/frontend-assignment#22
Closed
Upgrade version of prompt to 1.2.1 to get rid of rogue colors package #7201
dhwaneetbhatt opened this issue
Jan 10, 2022
· 2 comments
· May be fixed by FalconSocial/frontend-assignment#22
Labels
Comments
@dhwaneetbhatt Thanks for posting! We'll take a look as soon as possible. In the mean time, there are a few ways you can help speed things along:
Please remember: never post in a public forum if you believe you've found a genuine security vulnerability. Instead, disclose it responsibly. For help with questions about Sails, click here. |
dhwaneetbhatt
changed the title
t
Upgrade version of prompt to 1.2.1 to get rid of rogue colors package
Jan 10, 2022
Thank you @dhwaneetbhatt! |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Node version: 10.14.1
Sails version (sails): 1.5.0
ORM hook version (sails-hook-orm): 3.0.2
Sockets hook version (sails-hook-sockets): N.A.
Organics hook version (sails-hook-organics): N.A.
Grunt hook version (sails-hook-grunt): N.A.
Uploads hook version (sails-hook-uploads): N.A.
DB adapter & version (e.g. sails-mysql@5.55.5): N.A
Skipper adapter & version (e.g. skipper-s3@5.55.5): N.A
Please upgrade to v1.2.1 for Prompt: flatiron/prompt@b554b31
It pinned colors dependency to 1.4.0.
Issue: The author of https://github.com/Marak/colors.js has pushed a rogue commit on the newest version which causes garbage to be printed in the console and an infinite loop.
News: https://snyk.io/blog/open-source-npm-packages-colors-faker/
I have raised a PR for this: #7202
The text was updated successfully, but these errors were encountered: