Skip to content

Update cucumber to fix npm audit issues #30

@Phoscur

Description

@Phoscur
  Critical        Potential Command Injection                                   
                                                                                
  Package         shell-quote                                                   
                                                                                
  Patched in      >=1.6.1                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > shell-quote          
                                                                                
  More info       https://nodesecurity.io/advisories/117                        
                                                                                
                                                                                
  Low             Incorrect Handling of Non-Boolean Comparisons During          
                  Minification                                                  
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >= 2.4.24                                                     
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > ruglify > uglify-js                                         
                                                                                
  More info       https://nodesecurity.io/advisories/39                         
                                                                                
                                                                                
  Low             Incorrect Handling of Non-Boolean Comparisons During          
                  Minification                                                  
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >= 2.4.24                                                     
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > ruglify >      
                  uglify-js                                                     
                                                                                
  More info       https://nodesecurity.io/advisories/39                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > ruglify > uglify-js                                         
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > ruglify >      
                  uglify-js                                                     
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > browser-pack > umd   
                  > uglify-js                                                   
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > umd > uglify-js      
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  Low             Regular Expression Denial of Service                          
                                                                                
  Package         uglify-js                                                     
                                                                                
  Patched in      >=2.6.0                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > pogo > uglify-js                  
                                                                                
  More info       https://nodesecurity.io/advisories/48                         
                                                                                
                                                                                
  High            Regular Expression Denial of Service                          
                                                                                
  Package         minimatch                                                     
                                                                                
  Patched in      >=3.0.2                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > browserify > glob > minimatch     
                                                                                
  More info       https://nodesecurity.io/advisories/118        

Moderate        Regular Expression Denial of Service                          
                                                                                
  Package         underscore.string                                             
                                                                                
  Patched in      >=3.3.5                                                       
                                                                                
  Dependency of   grunt-cucumber [dev]                                          
                                                                                
  Path            grunt-cucumber > cucumber > underscore.string                 
                                                                                
  More info       https://nodesecurity.io/advisories/745      

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions