mcgilman opened a new pull request, #11154:
URL: https://github.com/apache/nifi/pull/11154

   # npm audit report
   
   dompurify  <=3.3.3
   Severity: moderate
   DOMPurify's ADD_TAGS function form bypasses FORBID_TAGS due to short-circuit 
evaluation - https://github.com/advisories/GHSA-39q2-94rc-95cp
   fix available via `npm audit fix`
   node_modules/dompurify
   
   follow-redirects  <=1.15.11
   Severity: moderate
   follow-redirects leaks Custom Authentication Headers to Cross-Domain 
Redirect Targets - https://github.com/advisories/GHSA-r4q5-vmmm-2653
   fix available via `npm audit fix`
   node_modules/follow-redirects
   
   hono  <4.12.14
   Severity: moderate
   hono Improperly Handles JSX Attribute Names Allows HTML Injection in 
hono/jsx SSR - https://github.com/advisories/GHSA-458j-xx4x-4375
   fix available via `npm audit fix`
   node_modules/hono


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to