关于Panini的2个漏洞,如何解决?

时间:2019-06-12 08:22:27

标签: npm

我用gulp完成了我的引导项目,但是我遇到了麻烦,我该怎么办?希望您能帮助我,谢谢。

这是npm审核信息

                    === npm audit security report ===    

                                 Manual Review                                  
             Some vulnerabilities require your attention to resolve             

          Visit https://go.npm.me/audit-guide for additional guidance   

  Moderate        Regular Expression Denial of Service                          

  Package         marked                                                        
  Patched in      >=0.6.2

  Dependency of   panini [dev]

  Path            panini > marked

  More info       https://npmjs.com/advisories/812


  Low             Regular Expression Denial of Service

  Package         braces

  Patched in      >=2.3.1

  Dependency of   panini [dev]

  Path            panini > vinyl-fs > glob-stream > micromatch > braces

  More info       https://npmjs.com/advisories/786

found 2 vulnerabilities (1 low, 1 moderate) in 11019 scanned packages
  2 vulnerabilities require manual review. See the full report for details.

我的计算机环境:

  • Windows 10
  • npm 6.9.0
  • gulp cli 2.2.0

这是我的package.json:

  "devDependencies": {
    "browser-sync": "^2.26.7",
    "gulp": "^4.0.2",
    "gulp-clean": "^0.4.0",
    "gulp-concat": "^2.6.1",
    "gulp-postcss": "^8.0.0",
    "gulp-sass": "^4.0.2",
    "autoprefixer": "^9.5.0",
    "gulp-sourcemaps": "^2.6.5",
    "mq4-hover-shim": "^0.3.0",
    "panini": "^1.6.0",
    "rimraf": "^2.6.3"
  },
  "engines": {
    "node": ">=0.10.1"
  },
  "scripts": {
    "start": "gulp",
    "build": "gulp build"
  },

我尝试npm审核修复程序,但是我失败了,您能告诉我如何解决该问题吗?

0 个答案:

没有答案