You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I was following this issue discussion on rubygems: rubygems/rubygems#735
which isn't really conclusive but many gem repos removed test_files
and I wonder what's your opinion on keeping/removing test_files part of gemspec?
Thanks,
Michal
The text was updated successfully, but these errors were encountered:
Hello,
Rack-cors gem comes packaged with
test_files
that includes mocha.js which is interpreted by our scans as version 1.11.0Our product security analysis is "flashing red" and flagging those:
https://www.huntr.dev/bounties/1d8a3d95-d199-4129-a6ad-8eafe5e77b9e/
mochajs/mocha#4770
I was following this issue discussion on rubygems: rubygems/rubygems#735
which isn't really conclusive but many gem repos removed
test_files
and I wonder what's your opinion on keeping/removing
test_files
part of gemspec?Thanks,
Michal
The text was updated successfully, but these errors were encountered: