-
Notifications
You must be signed in to change notification settings - Fork 3.7k
Closed
Labels
Bugthing that needs fixingthing that needs fixingPriority 1high priority issuehigh priority issueRelease 7.xwork is associated with a specific npm 7 releasework is associated with a specific npm 7 releaseSecuritysecurity relatedsecurity related
Description
Is there an existing issue for this?
- I have searched the existing issues
Current Behavior
Security scans fail do to high warning of a security vulnerability in ansi-regex.
Expected Behavior
Security scan pass.
Steps To Reproduce
We use twistlock to do vulnerability detection, which relies on NVD to get vulnerability data.
The issue can be found here, https://nvd.nist.gov/vuln/detail/CVE-2021-3807 and here, https://snyk.io/vuln/npm:ansi-regex.
Environment
- OS: Mac 11.5.2
- Node: v12.21.0
- npm: 7.21.1
Izook, djejaquino, JustJordanT, jazpearson, naffers and 17 more
Metadata
Metadata
Assignees
Labels
Bugthing that needs fixingthing that needs fixingPriority 1high priority issuehigh priority issueRelease 7.xwork is associated with a specific npm 7 releasework is associated with a specific npm 7 releaseSecuritysecurity relatedsecurity related