Bug 2003988: Compatible JS library updates and security for glob-parent for themes
glob-parent before 5.1.2 vulnerable to Regular Expression Denial of Service in enclosure regex - https://github.com/advisories/GHSA-ww39-953v-wcq6 - https://nvd.nist.gov/vuln/detail/CVE-2020-28469 - https://cwe.mitre.org/data/definitions/400.html Yet to be fixed: gulp However, our CSS gets compiled from hard-coded SASS files before webpages get loaded. Change-Id: If36e9f5df6b749574bc63154eff818ec707c1dec
Loading
Please sign in to comment