You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
npm audit fix
added 87 packages, removed 59 packages, changed 33 packages, and audited 2412 packages in 16s
165 packages are looking for funding
run `npm fund` for details
# npm audit report
axios <0.21.1
Severity: high
Server-Side Request Forgery - https://npmjs.com/advisories/1594
fix available via `npm audit fix --force`
Will install [email protected], which is a breaking change
node_modules/axios
contentful 1.0.0 - 2.1.2 || 4.0.0 - 5.0.3 || 7.1.0-beta0 - 7.1.0-beta1 || 7.5.0 - 8.0.2
Depends on vulnerable versions of axios
node_modules/contentful
gatsby-source-contentful <=4.5.0-next.1 || 4.5.1 - 5.0.0-v3rc.2
Depends on vulnerable versions of axios
Depends on vulnerable versions of base64-img
Depends on vulnerable versions of contentful
node_modules/gatsby-source-contentful
gatsby-transformer-inline-svg >=0.0.2
Depends on vulnerable versions of gatsby-source-contentful
node_modules/gatsby-transformer-inline-svg
utils-extend *
Severity: high
Prototype Pollution - https://npmjs.com/advisories/1502
fix available via `npm audit fix --force`
Will install [email protected], which is a breaking change
node_modules/utils-extend
ajax-request >=1.0.1
Depends on vulnerable versions of utils-extend
node_modules/ajax-request
base64-img *
Depends on vulnerable versions of ajax-request
Depends on vulnerable versions of file-system
node_modules/base64-img
gatsby-source-contentful <=4.5.0-next.1 || 4.5.1 - 5.0.0-v3rc.2
Depends on vulnerable versions of axios
Depends on vulnerable versions of base64-img
Depends on vulnerable versions of contentful
node_modules/gatsby-source-contentful
gatsby-transformer-inline-svg >=0.0.2
Depends on vulnerable versions of gatsby-source-contentful
node_modules/gatsby-transformer-inline-svg
file-match *
Depends on vulnerable versions of utils-extend
node_modules/file-match
file-system >=1.2.3
Depends on vulnerable versions of file-match
Depends on vulnerable versions of utils-extend
node_modules/file-system
9 high severity vulnerabilities
To address all issues (including breaking changes), run:
npm audit fix --force
The text was updated successfully, but these errors were encountered:
The text was updated successfully, but these errors were encountered: