[buddypress-trac] [BuddyPress Trac] #8154: Fix node modules vulnerabilities

buddypress-trac noreply at wordpress.org
Sat Jan 18 09:09:39 UTC 2020


#8154: Fix node modules vulnerabilities
-----------------------------------+---------------------
 Reporter:  imath                  |       Owner:  netweb
     Type:  defect (bug)           |      Status:  new
 Priority:  normal                 |   Milestone:  6.0.0
Component:  Build/Test Tools       |     Version:
 Severity:  normal                 |  Resolution:
 Keywords:  has-patch 2nd-opinion  |
-----------------------------------+---------------------
Changes (by imath):

 * keywords:  needs-patch => has-patch 2nd-opinion


Comment:

 Hi @netweb could you check
 [https://buddypress.trac.wordpress.org/attachment/ticket/8154/8154.patch
 8154.patch] ? It fixes a majority of the vulnerabilities without adding
 too much work (updating stylelint is generating way too much errors in
 css/scss files).

 Using [https://www.npmjs.com/package/phplint phplint] module instead of
 [https://www.npmjs.com/package/grunt-phplint grunt-phplint ] (not updated
 for 3 years!!) is fixing all high and major vulnerabilities!

-- 
Ticket URL: <https://buddypress.trac.wordpress.org/ticket/8154#comment:1>
BuddyPress Trac <http://buddypress.org/>
BuddyPress Trac


More information about the buddypress-trac mailing list