Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Npm audit security vulnerabilitie #1728

Closed
jucaran opened this issue May 26, 2022 · 2 comments
Closed

Npm audit security vulnerabilitie #1728

jucaran opened this issue May 26, 2022 · 2 comments

Comments

@jucaran
Copy link

jucaran commented May 26, 2022

The problem

The dependency "dicer" has 2 high severity vulnerabilities

Environment

  • Firebase SDK version: 10.2.0
  • Firebase Product: firebase-admin
  • Node.js version: 16.14.2
  • NPM version: 8.5.0

Relevant Code:

npm audit report

dicer *
Severity: high
Crash in HeaderParser in dicer - GHSA-wm7h-9275-46v2
fix available via npm audit fix --force
Will install firebase-admin@7.0.0, which is a breaking change
node_modules/dicer
firebase-admin >=7.1.0
Depends on vulnerable versions of dicer
node_modules/firebase-admin

2 high severity vulnerabilities

@google-oss-bot
Copy link

I found a few problems with this issue:

  • I couldn't figure out how to label this issue, so I've labeled it for a human to triage. Hang tight.
  • This issue does not seem to follow the issue template. Make sure you provide all the required information.

@jucaran
Copy link
Author

jucaran commented May 26, 2022

Sorry there is already an issue opened with this problem, i'll wait the response to that one.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants