Skip to content

Please contact authors of these packages or otherwise update your dependencies, or suggest a replacement. #33

@coderextreme

Description

@coderextreme

npm audit report

json5 <1.0.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - GHSA-9c47-m6qq-7p4h
No fix available
node_modules/loader-utils/node_modules/json5
loader-utils <=1.4.0
Depends on vulnerable versions of json5
node_modules/loader-utils
css-loader 0.6.0 - 0.26.1
Depends on vulnerable versions of loader-utils
node_modules/css-loader
file-loader 0.5.0 - 0.10.0
Depends on vulnerable versions of loader-utils
node_modules/file-loader
string-replace-webpack-plugin *
Depends on vulnerable versions of css-loader
Depends on vulnerable versions of file-loader
Depends on vulnerable versions of loader-utils
Depends on vulnerable versions of style-loader
node_modules/string-replace-webpack-plugin

style-loader 0.8.2 - 0.13.1
Depends on vulnerable versions of loader-utils
node_modules/style-loader

6 vulnerabilities (1 high, 5 critical)

To address issues that do not require attention, run:
npm audit fix

Some issues need review, and may require choosing
a different dependency.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions