You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Issues with no direct upgrade or patch: ✗ Cross-site Scripting (XSS) [Medium Severity][https://security.snyk.io/vuln/SNYK-JS-COOKIE-8163060] in cookie@0.4.2 introduced by @lhci/cli@0.14.0 > express@4.20.0 > cookie@0.6.0 and 7 other path(s) This issue was fixed in versions: 0.7.0
The text was updated successfully, but these errors were encountered:
I think I came across something similar in a few of my repositories.
@lhci/cli@0.14.0 requires cookie@^0.4.1 via a transitive dependency on @sentry/node@6.19.7
@lhci/cli@0.14.0 requires cookie@0.6.0 via a transitive dependency on express@4.21.0
Describe the bug
Currently,
@lhci/cli
0.14.0 has a number of vulnerabilitiesHere is one we identified:
https://security.snyk.io/vuln/SNYK-JS-COOKIE-8163060
The text was updated successfully, but these errors were encountered: