photos icon indicating copy to clipboard operation
photos copied to clipboard

[stable30] Fix npm audit

Open nextcloud-command opened this issue 1 year ago • 0 comments

Audit report

This audit fix resolves 9 of the total 11 vulnerabilities found in your project.

Updated dependencies

  • @vue/component-compiler-utils
  • @vue/test-utils
  • axios
  • elliptic
  • micromatch
  • postcss
  • vue-loader
  • vue-template-compiler
  • webdav

Fixed vulnerabilities

@vue/component-compiler-utils #

  • Caused by vulnerable dependency:
    • postcss
  • Affected versions: *
  • Package usage:
    • node_modules/@vue/component-compiler-utils

@vue/test-utils #

  • Caused by vulnerable dependency:
    • vue-template-compiler
  • Affected versions: <=1.3.6
  • Package usage:
    • node_modules/@vue/test-utils

axios #

  • Axios Cross-Site Request Forgery Vulnerability
  • Severity: moderate (CVSS 6.5)
  • Reference: https://github.com/advisories/GHSA-wf5p-g6vw-rhxx
  • Affected versions: 0.8.1 - 0.27.2 || 1.3.2 - 1.7.3
  • Package usage:
    • node_modules/@nextcloud/axios/node_modules/axios
    • node_modules/axios
    • node_modules/wait-on/node_modules/axios

elliptic #

micromatch #

postcss #

vue-loader #

  • Caused by vulnerable dependency:
    • @vue/component-compiler-utils
  • Affected versions: 15.0.0-beta.1 - 15.11.1
  • Package usage:
    • node_modules/vue-loader

vue-template-compiler #

webdav #

  • Caused by vulnerable dependency:
    • axios
  • Affected versions: 2.0.0-rc1 - 4.11.3
  • Package usage:
    • node_modules/webdav

nextcloud-command avatar Aug 25 '24 03:08 nextcloud-command