angular-marked icon indicating copy to clipboard operation
angular-marked copied to clipboard

Security issue in marked 0.3.6

Open elwynelwyn opened this issue 7 years ago • 0 comments

Node Security project has flagged Marked 0.3.6 as insecure.

https://nodesecurity.io/advisories/531

This in turn makes angular-marked insecure, and causes our build to fail.

Marked is no longer maintained by the looks of things:

https://github.com/chjj/marked/issues/938#issuecomment-332268941

Would be great if the underlying library this project uses could be swapped, perhaps to the suggestion here:

https://github.com/Hypercubed/angular-marked/issues/76

elwynelwyn avatar Oct 03 '17 04:10 elwynelwyn