Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Snyk reports autolinker vulnerability in remarkable dependency. #11

Open
codechennerator opened this issue Aug 27, 2019 · 2 comments
Open

Comments

@codechennerator
Copy link

codechennerator commented Aug 27, 2019

Snyk: https://snyk.io/test/npm/remarkable/1.7.4
In order to quiet the autolinker reports by Snyk, would need to update helper-markdown to remarkable 2.0.

Made a PR here: #10

@jonschlinkert @doowb tagging you two to see if you guys could give it a look. I'm open to any feedback or requirements! :)

@codechennerator
Copy link
Author

@jonschlinkert or @doowb Sorry for the double ping! I'm hoping to get someone to look at this though!

@juliofarah
Copy link

+1
Is this something the team is looking into?
I've made a few hoops until I got to this repository (from bull-arena > handlebars-helpers > helper-markdown)

@helpers helpers locked as off-topic and limited conversation to collaborators Nov 26, 2019
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants