-
Notifications
You must be signed in to change notification settings - Fork 2.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Security vulnerability noticed in word-wrap 1.2.3 #2623
Comments
I think it’s depends on #2493 |
vadimka123: We are blocked due to the same security vulnerability issue. The word-wrap 1.2.3(vulnerable version), is not a direct dependency of our app, it is indirectly imported by pdf-make. We are already on the latest version of pdf-make: 0.2.7. Can you advise what needs to be done to resolve this? |
@TanushreeB2611 , original foliojs packages looks like didn’t affected and not using brfs |
vadimka123: Did not get you ? What step can I take to resolve this issue ? |
@TanushreeB2611 Just wait steps to solve from pdf-kit side |
Any ETA when this issue will be addressed? |
I think it's already fixed |
Fixed in version 0.2.10. |
Thank you @vadimka123 and @liborm85 for quick response. |
word-wrap 1.2.3 package which is used in the path brfs/2.0.2 -> static-module/3.0.4 -> escodegen/1.14.3 -> optionator/0.8.3. In npm, I can latest word-wrap package version available is 1.2.5 which has no security vulnerabilities reported. request you to upgrade the version for this package.
The text was updated successfully, but these errors were encountered: