-
Notifications
You must be signed in to change notification settings - Fork 756
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Resource exhaustion in engine.io dependency from npm audit #1926
Comments
According to the migration guides, it would be possible to upgrade the server to 4 while maintaining compatibility with 2.x clients, so keeping the same supported browsers as before. Don't know if that's worth attempting as they mention only dropping support for IE 8. |
Duplicate issue. See #1850 for original. |
This was referenced Mar 13, 2022
Merged
This was referenced Apr 4, 2022
This was referenced Apr 18, 2022
This was referenced Apr 24, 2022
1 task
This was referenced Oct 31, 2022
1 task
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Report at GHSA-j4f2-536g-r55m
https://www.npmjs.com/package/socket.io is currently at 4.4.x but this package is using 2.4.x
browser-sync/packages/browser-sync/package.json
Line 63 in a7c14c8
The text was updated successfully, but these errors were encountered: