logreader
logreader copied to clipboard
[stable29] Fix npm audit
Audit report
This audit fix resolves 14 of the total 21 vulnerabilities found in your project.
Updated dependencies
- @nextcloud/dialogs
- @nextcloud/l10n
- @nextcloud/vite-config
- @vitejs/plugin-vue2
- @vitest/coverage-istanbul
- @vue/test-utils
- esbuild
- node-gettext
- rollup-plugin-esbuild-minify
- vite
- vite-node
- vitest
- vue-resize
- vue-template-compiler
Fixed vulnerabilities
@nextcloud/dialogs #
- Caused by vulnerable dependency:
- @nextcloud/vue
- vue
- vue-frag
- Affected versions: >=4.2.0-beta.1
- Package usage:
-
node_modules/@nextcloud/dialogs
-
@nextcloud/l10n #
- Caused by vulnerable dependency:
- node-gettext
- Affected versions: 1.1.0 - 3.1.0
- Package usage:
-
node_modules/@nextcloud/l10n
-
@nextcloud/vite-config #
- Caused by vulnerable dependency:
- @vitejs/plugin-vue2
- Affected versions: <=1.5.3
- Package usage:
-
node_modules/@nextcloud/vite-config
-
@vitejs/plugin-vue2 #
- Caused by vulnerable dependency:
- vue
- Affected versions: *
- Package usage:
-
node_modules/@vitejs/plugin-vue2
-
@vitest/coverage-istanbul #
- Caused by vulnerable dependency:
- vitest
- Affected versions: <=2.2.0-beta.2
- Package usage:
-
node_modules/@vitest/coverage-istanbul
-
@vue/test-utils #
- Caused by vulnerable dependency:
- vue
- vue-template-compiler
- Affected versions: <=1.3.6
- Package usage:
-
node_modules/@vue/test-utils
-
esbuild #
- esbuild enables any website to send any requests to the development server and read the response
- Severity: moderate (CVSS 5.3)
- Reference: https://github.com/advisories/GHSA-67mh-4wv8-2f99
- Affected versions: <=0.24.2
- Package usage:
-
node_modules/esbuild -
node_modules/vite/node_modules/esbuild
-
node-gettext #
- node-gettext vulnerable to Prototype Pollution
- Severity: high (CVSS 5.9)
- Reference: https://github.com/advisories/GHSA-g974-hxvm-x689
- Affected versions: *
- Package usage:
-
node_modules/node-gettext
-
rollup-plugin-esbuild-minify #
- Caused by vulnerable dependency:
- esbuild
- Affected versions: <=1.2.0
- Package usage:
-
node_modules/rollup-plugin-esbuild-minify
-
vite #
- Caused by vulnerable dependency:
- esbuild
- Affected versions: 0.11.0 - 6.1.5
- Package usage:
-
node_modules/vite
-
vite-node #
- Caused by vulnerable dependency:
- vite
- Affected versions: <=2.2.0-beta.2
- Package usage:
-
node_modules/vite-node
-
vitest #
- Caused by vulnerable dependency:
- vite
- vite-node
- Affected versions: 0.0.1 - 0.0.12 || 0.0.29 - 0.0.122 || 0.3.3 - 2.2.0-beta.2
- Package usage:
-
node_modules/vitest
-
vue-resize #
- Caused by vulnerable dependency:
- vue
- Affected versions: 0.4.0 - 1.0.1
- Package usage:
-
node_modules/vue-resize
-
vue-template-compiler #
- vue-template-compiler vulnerable to client-side Cross-Site Scripting (XSS)
- Severity: moderate (CVSS 4.2)
- Reference: https://github.com/advisories/GHSA-g3ch-rx76-35fx
- Affected versions: >=2.0.0
- Package usage:
-
node_modules/vue-template-compiler
-