This repository has been archived by the owner on Jul 24, 2024. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 1.3k
4.13.1 vulnerabilities #2826
Comments
Is there anyone looking at upgrading the version of the libsass binary in node-sass to >=3.6.9? I believe that might resolve the Snyk vulnerabilities. |
Libsass Upgrade is being tracked in #2685 |
Are those vulnerabilities can affect a production web app already compiled? |
@Janaka-Steph these only affect people compiling Sass as a web service. It does not affect compiling Sass code as a CLI and build pipeline. |
Alright thank you! Snyk should mention that. |
jiongle1
pushed a commit
to scantist-ossops-m2/node-sass
that referenced
this issue
Apr 7, 2024
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
There are 16 active vulnerabilities referenced in Snyk : https://snyk.io/test/npm/node-sass/4.13.1
And there are 0 referenced in GitHub : https://github.com/sass/node-sass/security/advisories
These should be fixed ASAP, or contact Snyk to close them if they are false positives.
The text was updated successfully, but these errors were encountered: