firstrunwizard
firstrunwizard copied to clipboard
[master] Fix npm audit
Audit report
This audit fix resolves 5 of the total 16 vulnerabilities found in your project.
Updated dependencies
- @babel/helpers
- @babel/runtime
- @nextcloud/dialogs
- axios
- vue-resize
Fixed vulnerabilities
@babel/helpers #
- Babel has inefficient RexExp complexity in generated code with .replace when transpiling named capturing groups
- Severity: moderate (CVSS 6.2)
- Reference: https://github.com/advisories/GHSA-968p-4wvh-cqc8
- Affected versions: <7.26.10
- Package usage:
node_modules/@babel/helpers
@babel/runtime #
- Babel has inefficient RexExp complexity in generated code with .replace when transpiling named capturing groups
- Severity: moderate (CVSS 6.2)
- Reference: https://github.com/advisories/GHSA-968p-4wvh-cqc8
- Affected versions: <7.26.10
- Package usage:
node_modules/@babel/runtime
@nextcloud/dialogs #
- Caused by vulnerable dependency:
- @nextcloud/vue
- vue
- vue-frag
- Affected versions: >=4.2.0-beta.1
- Package usage:
node_modules/@nextcloud/dialogs
axios #
- axios Requests Vulnerable To Possible SSRF and Credential Leakage via Absolute URL
- Severity: high
- Reference: https://github.com/advisories/GHSA-jr5f-v2jv-69x6
- Affected versions: <1.8.2
- Package usage:
node_modules/axios
vue-resize #
- Caused by vulnerable dependency:
- vue
- Affected versions: 0.4.0 - 1.0.1
- Package usage:
node_modules/vue-resize