generated from hmcts/expressjs-template
-
Notifications
You must be signed in to change notification settings - Fork 2
/
yarn-audit-known-issues
5 lines (5 loc) · 1.49 KB
/
yarn-audit-known-issues
1
2
3
4
5
{"value":"axios","children":{"ID":1098583,"Issue":"Server-Side Request Forgery in axios","URL":"https://github.com/advisories/GHSA-8hc4-vh64-cxmj","Severity":"high","Vulnerable Versions":">=1.3.2 <=1.7.3","Tree Versions":["1.7.2"],"Dependents":["dtsse-dashboard-ingestion@workspace:."]}}
{"value":"har-validator","children":{"ID":"har-validator (deprecation)","Issue":"this library is no longer supported","Severity":"moderate","Vulnerable Versions":"5.1.5","Tree Versions":["5.1.5"],"Dependents":["postman-request@npm:2.88.1-postman.8-beta.1"]}}
{"value":"ip","children":{"ID":1099357,"Issue":"ip SSRF improper categorization in isPublic","URL":"https://github.com/advisories/GHSA-2p57-rm9w-gvfp","Severity":"high","Vulnerable Versions":"<=2.0.1","Tree Versions":["2.0.1"],"Dependents":["dtsse-dashboard-ingestion@workspace:."]}}
{"value":"tough-cookie","children":{"ID":1097682,"Issue":"tough-cookie Prototype Pollution vulnerability","URL":"https://github.com/advisories/GHSA-72xf-g2v4-qvf3","Severity":"moderate","Vulnerable Versions":"<4.1.3","Tree Versions":["2.5.0"],"Dependents":["postman-request@npm:2.88.1-postman.8-beta.1"]}}
{"value":"uuid","children":{"ID":"uuid (deprecation)","Issue":"Please upgrade to version 7 or higher. Older versions may use Math.random() in certain circumstances, which is known to be problematic. See https://v8.dev/blog/math-random for details.","Severity":"moderate","Vulnerable Versions":"3.4.0","Tree Versions":["3.4.0"],"Dependents":["postman-request@npm:2.88.1-postman.8-beta.1"]}}