Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix security alert (CVE-2020-7598) #11

Merged
merged 1 commit into from
Mar 31, 2020

Conversation

bshackelford
Copy link
Contributor

@bshackelford bshackelford commented Mar 31, 2020

Description

Update eslint and mocha to address minimist vulnerability: https://github.com/vsco/dcdr-js/network/alert/package-lock.json/minimist/open

Testing

Run npm test

@bshackelford
Copy link
Contributor Author

Seems TravisCI isn't running for this repo anymore 🤔

@promiseofcake

This comment has been minimized.

@promiseofcake
Copy link
Contributor

So our org lost access to https://travis-ci.org/ for our open source repos. I re-enabled it and it should now be building here. A longer term plan would be to allow us to migrate our open source public repos to our https://travis-ci.COM account.

@bshackelford
Copy link
Contributor Author

@promiseofcake Ah thank you. I tried looking into it but not sure I had proper access. 🙏

@bshackelford bshackelford force-pushed the bms/update-vulnerable-dependencies branch from 7ff5bac to cc4ae8f Compare March 31, 2020 19:03
@bshackelford bshackelford merged commit d808361 into master Mar 31, 2020
@bshackelford bshackelford deleted the bms/update-vulnerable-dependencies branch March 31, 2020 19:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants