Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

yarn audit shows 17K + vulnerabilities #28082

Open
safaiyeh opened this issue Feb 15, 2020 · 5 comments
Open

yarn audit shows 17K + vulnerabilities #28082

safaiyeh opened this issue Feb 15, 2020 · 5 comments

Comments

@safaiyeh
Copy link
Collaborator

@safaiyeh safaiyeh commented Feb 15, 2020

Description:

Screen Shot 2020-02-15 at 8 31 01 AM

React Native version:
on master

Steps To Reproduce

  1. run yarn audit

Expected Results

Should output 0 vulnerabilities

Snack, code example, screenshot, or link to a repository:

N/A

@medha-yadav
Copy link

@medha-yadav medha-yadav commented Feb 25, 2020

I would like to work on this.Could you please guide on this.

@safaiyeh
Copy link
Collaborator Author

@safaiyeh safaiyeh commented Feb 26, 2020

@medha-yadav Pick one of the vulnerabilities and investigate how to resolve it :D

@maschad
Copy link
Contributor

@maschad maschad commented Feb 27, 2020

Hey @safaiyeh thanks for pointing this out, I created a PR #28181 to address it. Let me know what you think 💃

@CoenWarmer
Copy link

@CoenWarmer CoenWarmer commented Feb 28, 2020

Current status: @cpojer states here that upgrading of certain libraries (i.e. Lodash) that contain security advisories needs to be picked up by FB internally.

@maschad
Copy link
Contributor

@maschad maschad commented Mar 16, 2020

Can we close this @cpojer ?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Linked pull requests

Successfully merging a pull request may close this issue.

None yet
5 participants
You can’t perform that action at this time.