-
-
Notifications
You must be signed in to change notification settings - Fork 336
Closed
Labels
type/upstreamAny issues in dependenciesAny issues in dependenciestype/usageAny support issues asking for helpAny support issues asking for help
Milestone
Description
┌───────────────┬──────────────────────────────────────────────────────────────┐
│ High │ Regular Expression Denial of Service │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package │ url-regex │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Patched in │ No patch available │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ fomantic-ui │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path │ fomantic-ui > gulp-concat-css > rework-import > url-regex │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info │ https://npmjs.com/advisories/1550 │
└───────────────┴──────────────────────────────────────────────────────────────┘
All these dependencies look pretty unmaintained to me so I think the best course of action would be to look for alternatives to gulp-concat-css.
PMudra, wtfdanny, thomasaelbrecht, ceisele-r, jike212 and 5 more
Metadata
Metadata
Assignees
Labels
type/upstreamAny issues in dependenciesAny issues in dependenciestype/usageAny support issues asking for helpAny support issues asking for help