-
Notifications
You must be signed in to change notification settings - Fork 3
Description
Description:
Our security team has identified a potential vulnerability in your npm package. Specifically, the following outdated jQuery files contain known security vulnerabilities and pose a risk to projects using your package:
jquery-1.9.1.js , jquery-2.2.0.js in the /test/fixture/ folder
These files appear to be outdated versions of jQuery with known vulnerabilities. We request that you consider removing these files from your package in a future release.
Impact:
These outdated files introduce potential security vulnerabilities into projects that depend on this package.
This could lead to security risks for a large number of users, given the popularity of your package.
Request:
Please remove jquery-1.9.1.js , jquery-2.2.0.js from the package.
If there are specific reasons for their inclusion, please provide an explanation and consider alternative solutions.