-
Notifications
You must be signed in to change notification settings - Fork 34
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Vulnerability in Hoek dependency from npm audit #58
Comments
As well as Thanks! |
+1 for this. Thanks in advance. |
+1 also for this. Commenting to raise awareness. Thanks in advance. |
It seems there's a whole chain of sub-dependencies blocking this issue. As far as I can tell, we should direct our attention here: nodejs/node-gyp#1492. |
OK I did an audit and the only vulnerabilities are from node-sass which node-sass-chokidar depends on, so until they can resolve on their end then there isn't much to do. but I assure you none of the vulnerabilities are high-priority |
https://nodesecurity.io/advisories/566
Current dependency is hoek 2.16.3. It's patched in version 5.0.3. Can we update this version of hoek int the dependency?
Thanks!
The text was updated successfully, but these errors were encountered: