You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The text was updated successfully, but these errors were encountered:
globalexport
changed the title
Audit vulerabilities in grant@5.4.23 (cookie@0.6.0, jwk-to-pem@2.0.6)
Audit vulnerabilities in grant@5.4.23 (cookie@0.6.0, jwk-to-pem@2.0.6)
Oct 21, 2024
Thanks for the report, I just checked that myself.
For the cookie package I do see that there is a new version not covered by the caret range on 0.x release obviously, but for the jwk-to-pem package I'm actually surprised that it is still being listed as vulnerable since that issue got fixed in elliptic v6.5.7 indutny/elliptic#317 and then updated in jwk-to-pem v2.0.6 Brightspace/node-jwk-to-pem#189
The text was updated successfully, but these errors were encountered: