Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Malicious node packages detected in fac-bounty-client #1

Open
2 tasks done
hachchi opened this issue Mar 22, 2024 · 0 comments
Open
2 tasks done

Malicious node packages detected in fac-bounty-client #1

hachchi opened this issue Mar 22, 2024 · 0 comments

Comments

@hachchi
Copy link

hachchi commented Mar 22, 2024

Prerequisites

  • I am running the latest version
  • I checked to make sure that this issue has not already been filed

Expected Behavior

Node packages must remain up-to-date and free from vulnerabilities.

Current Behavior

npm audit command lists bunch of outdated and venerable node packages.

Failure Information (for bugs)

There are 151 vulnerable node packages. The attached file contains all the fixable node packages.
audit_report

Steps to Reproduce

To reproduce the issue, please follow below steps.

  1. git clone https://github.com/c2siorg/fact-bounty.git
  2. cd fact-bounty-client
  3. npm audit

Context

Distributor ID: Ubuntu
Description: Ubuntu 22.04.3 LTS
Release: 22.04
Codename: jammy
Node: 21.6.2

Failure Logs

Audit Report: audit_report.txt

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant