Skip to content

Commit

Permalink
Ignore GHSA-c2qf-rxjj-qqgw when auditing for v1 main branch (#484)
Browse files Browse the repository at this point in the history
The dependency is only introduced through development dependencies and
there this vulnerability has limited impact.
  • Loading branch information
ericcornelissen authored Jun 25, 2023
1 parent 8fffcbf commit 7e32d81
Showing 1 changed file with 4 additions and 0 deletions.
4 changes: 4 additions & 0 deletions .nsprc
Original file line number Diff line number Diff line change
Expand Up @@ -2,5 +2,9 @@
"GHSA-ww39-953v-wcq6": {
"active": true,
"notes": "ReDoS introduced through transitive dependency of ESLint@6. Since ESLint@6 is only used for compatibility testing the risk is accepted"
},
"GHSA-c2qf-rxjj-qqgw": {
"active": true,
"notes": "ReDoS in various devDependency trees with limited impact. Updates may come in over time."
}
}

0 comments on commit 7e32d81

Please sign in to comment.