Skip to content
This repository has been archived by the owner on Dec 11, 2019. It is now read-only.

Commit

Permalink
Add exception, supressing two new reported vulnerabilities
Browse files Browse the repository at this point in the history
If this change looks OK, I'll make sure to submit patch to 0.20.x and master

Auditors: @evq, @darkdh, @diracdeltas
  • Loading branch information
bsclifton committed Sep 28, 2017
1 parent 6089029 commit 8ae5a2f
Showing 1 changed file with 3 additions and 1 deletion.
4 changes: 3 additions & 1 deletion .nsprc
Expand Up @@ -2,6 +2,8 @@
"exceptions": [
"https://nodesecurity.io/advisories/77",
"https://nodesecurity.io/advisories/525",
"https://nodesecurity.io/advisories/479"
"https://nodesecurity.io/advisories/479",
"https://nodesecurity.io/advisories/534",
"https://nodesecurity.io/advisories/535"
]
}

2 comments on commit 8ae5a2f

@evq
Copy link
Member

@evq evq commented on 8ae5a2f Sep 28, 2017

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

we should upgrade the locked version of mime included via brave@0.21.0 > webtorrent-remote@2.0.2 > webtorrent@0.98.19 > mime@1.3.4 otherwise ++

@bsclifton
Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@evq PR submitted: webtorrent/webtorrent#1196

I verified 1.4.1 has the fix, per broofa/mime#167 (comment)

Please sign in to comment.