tableExport.jquery.plugin icon indicating copy to clipboard operation
tableExport.jquery.plugin copied to clipboard

npm gives low vulnerability on tableexport.jquery.plugin>jspdf-autotable > jspdf > canvg > xmldom

Open jbieneck opened this issue 4 years ago • 1 comments

here is the output of npm audit: $ npm audit === npm audit security report ===
Manual Review
Some vulnerabilities require your attention to resolve
Visit https://go.npm.me/audit-guide for additional guidance
Low Misinterpretation of malicious XML input
Package xmldom
Patched in >=0.5.0
Dependency of tableexport.jquery.plugin [dev]
Path tableexport.jquery.plugin > jspdf-autotable > jspdf > canvg > xmldom
More info https://npmjs.com/advisories/1650
found 1 low severity vulnerability in 1256 scanned packages 1 vulnerability requires manual review. See the full report for details.

jbieneck avatar Mar 17 '21 12:03 jbieneck

There is a 5 day old pull request on the cnvg project that targets this issue. Think you have to wait until they merged this request.

hhurz avatar Mar 17 '21 19:03 hhurz