react-video-recorder icon indicating copy to clipboard operation
react-video-recorder copied to clipboard

failing npm audit with recursive depenency on bad version of mime package

Open beatthat opened this issue 3 years ago • 1 comments

the dependencies are react-video-recorder > ts-ebml > matroska > mime

...npm audit output below

┌───────────────┬──────────────────────────────────────────────────────────────┐ │ Moderate │ Regular Expression Denial of Service │ ├───────────────┼──────────────────────────────────────────────────────────────┤ │ Package │ mime │ ├───────────────┼──────────────────────────────────────────────────────────────┤ │ Patched in │ >= 1.4.1 < 2.0.0 || >= 2.0.3 │ ├───────────────┼──────────────────────────────────────────────────────────────┤ │ Dependency of │ react-video-recorder │ ├───────────────┼──────────────────────────────────────────────────────────────┤ │ Path │ react-video-recorder > ts-ebml > matroska > mime │ ├───────────────┼──────────────────────────────────────────────────────────────┤ │ More info │ https://npmjs.com/advisories/535 │ └───────────────┴────────────────────────────────────────────────────────────

beatthat avatar Apr 13 '21 19:04 beatthat

+1

mwest-cs avatar May 27 '21 17:05 mwest-cs