Andrii Kurdiumov
Andrii Kurdiumov
Can you give more information about how do you get here? Maybe small app which repro problem
That's slightly bigger then small app, since I have to understand how to trigger error. Can you reduce it even further?
Apologize to all for extremely long delay. I did update to image-size 1.0.2 in version 1.4.3. Let me known if you have any issues.
Technically you have 2.7.0 now, but it is still has this vuln. I submit PR https://github.com/Stuk/jszip/pull/884 to backport fix, so hopefully this get accepted, so I can re-release secured version.
Ping me in couple days, if there would be no response from JSzip I would publish with forked package.
@aslubsky and others, I update version to 1.4.1 where I switch to fork of [email protected] which does not have security issues. I start looking for alternatives to jszip with both...
Can somebody share template and small script for this issue?
I don't need exact template. If you can create small sample that would be fine. Maybe you are using images/checkboxes or other stuff inside template.
Hi guys. Seems to be I wake up from hybernation. From the discussion it is not clear, are you using `.docx` format and not `.xlsx` files? We do not support...
That's quite interesting idea. I think it would be relatively easy to implement for somebody who already hack into the project. > Is there any other packages out there where...