Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade "debug" dep to version 2.6.9 or greater #1003

Closed
jennifer-shehane opened this issue Dec 4, 2017 · 2 comments
Closed

Upgrade "debug" dep to version 2.6.9 or greater #1003

jennifer-shehane opened this issue Dec 4, 2017 · 2 comments
Labels
good first issue Good for newcomers process: build Related to our internal build process

Comments

@jennifer-shehane
Copy link
Member

As mentioned in gitter here: https://gitter.im/cypress-io/cypress?at=5a21f516ba39a53f1a0ccde4

https://nodesecurity.io/advisories/534

@jennifer-shehane jennifer-shehane added good first issue Good for newcomers process: build Related to our internal build process labels Dec 4, 2017
@brian-mann
Copy link
Member

Sure, this is technically correct, but really Cypress is immune to most if not all security vulnerabilities because its locally run software - not a web server hosted in the cloud.

Something like this would be almost impossible to trigger unless the user of Cypress themselves caused this to happen.

@igniteeng000
Copy link

debug version is changed to 3.1.0. So you must close this issue.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
good first issue Good for newcomers process: build Related to our internal build process
Projects
None yet
Development

No branches or pull requests

3 participants