Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

NPM registry and Bower registry #30

Open
irbian opened this issue Aug 22, 2019 · 1 comment
Open

NPM registry and Bower registry #30

irbian opened this issue Aug 22, 2019 · 1 comment

Comments

@irbian
Copy link

irbian commented Aug 22, 2019

Hi!

Any chance to see this project published on the NPM and Bower registries?

Regards

@StudioMaX
Copy link

Bumping this.

Some time ago this became a problem, as the CVE-2016-10744 / GHSA-rf66-hmqf-q3fc vulnerability appeared in the GitHub Advisory Database database. The GitHub checker sees that we have installed a package called "select2", but at the same time version 1.0.10, which is not on NPM, and which, according to the "Affected versions < 4.0.6" condition, is vulnerable.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants