vuejs-medium-editor icon indicating copy to clipboard operation
vuejs-medium-editor copied to clipboard

package.json dependency on "pure-gist-embed" involves a security vulnerability

Open igalgh opened this issue 1 year ago • 2 comments
trafficstars

Apparently tui2tone/gist-embed (aka pure-gist-embed) hasn't been updated for several years now. It pulls axios with a known security vulnerability: Screenshot 2024-04-30 at 5 36 29 PM

Screenshot 2024-04-30 at 5 43 19 PM

Maybe it's time to replace it (?)

igalgh avatar Apr 30 '24 14:04 igalgh

do you have an alternative in mind? @igal1c0de4n

manuelgeek avatar Aug 27 '24 09:08 manuelgeek

sorry - I don't have sufficient experience with the desired functionality nor with packages which may replace it

igalgh avatar Aug 29 '24 06:08 igalgh