lighthouse-ci icon indicating copy to clipboard operation
lighthouse-ci copied to clipboard

Version 0.14.0 Vulnerabilities

Open Elte156 opened this issue 4 months ago • 2 comments

Describe the bug

Currently, @lhci/cli 0.14.0 has a number of vulnerabilities

Here is one we identified:

https://security.snyk.io/vuln/SNYK-JS-COOKIE-8163060

Issues with no direct upgrade or patch:
  ✗ Cross-site Scripting (XSS) [Medium Severity][https://security.snyk.io/vuln/SNYK-JS-COOKIE-8163060] in [email protected]
    introduced by @lhci/[email protected] > [email protected] > [email protected] and 7 other path(s)
  This issue was fixed in versions: 0.7.0

Elte156 avatar Oct 09 '24 15:10 Elte156