Skip to content

Minor security and code fixes #305

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

Kartikey-Mishra1
Copy link

@Kartikey-Mishra1 Kartikey-Mishra1 commented Jul 2, 2022

Type of change

  • Security fixes
  • Minor code change

Description

What does this PR do?

  • On running yarn audit there are currently 116 vulnerabilities, this PR mostly tries to remediate some of the critical and high vulnerabilities by:
  • Bind the updateHistoryState() method in history.js

Signed-off-by: Kartikey Mishra kartikeymishra.211199@gmail.com

- Upgrade axios and pin minimist,node-fetch and jsprim
- Bind updateHistoryState()

Signed-off-by: Kartikey Mishra <kartikeymishra.211199@gmail.com>
@Kartikey-Mishra1
Copy link
Author

Hi , this is the first pull request I have made to this repo , I am not familiar with the process , can one of the admin please take a look at this PR and help me out here , thanks in advance

@shreyashankar
Copy link
Collaborator

Thank you for making this! Will take a look today or tomorrow :)

@Kartikey-Mishra1
Copy link
Author

Hi,sorry to ping again just wanted to know if you had a chance to look at this PR and if there's something further you would like me to do here

@shreyashankar
Copy link
Collaborator

Thanks for this---got caught up in a paper deadline; will merge shortly :)

@shreyashankar shreyashankar self-requested a review July 16, 2022 17:52
@shreyashankar
Copy link
Collaborator

Looks like tests are failing, I'll take a look when I next get on the computer

@Kartikey-Mishra1
Copy link
Author

Sure thanks a lot for taking your time out for this and helping me out here . Feel free to request any changes or anything else you would like me to do in the PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants