-
Notifications
You must be signed in to change notification settings - Fork 0
[Security]: mdast-util-to-hast has unsanitized class attribute #640
Copy link
Copy link
Open
Labels
apps/storybookImproovements, additions or technical updates of the storybook docsImproovements, additions or technical updates of the storybook docssecurityTracking einer Security VulnerabilityTracking einer Security Vulnerability
Description
Link zum Dependbot Alert
https://github.com/ncs-northware/northware/security/dependabot/39
Schweregrad
Moderate
Betroffenes Package
storybooks sub-sub-dependencies
Abhängigkeiten (npm list )
northware@ /workspaces/northware
└─┬ [email protected] -> ./node_modules/.pnpm/[email protected][email protected]/node_modules/ultracite
└─┬ @trpc/[email protected] -> ./node_modules/.pnpm/@[email protected][email protected]/node_modules/@trpc/server
└─┬ [email protected] invalid: "^15.3.1" from node_modules/.pnpm/@[email protected][email protected]/node_modules/@trpc/server -> ./node_modules/.pnpm/[email protected]_@[email protected][email protected][email protected][email protected]/node_modules/next
└─┬ [email protected] invalid: "8.6.0" from node_modules/.pnpm/[email protected]_@[email protected][email protected][email protected][email protected]/node_modules/next -> ./node_modules/.pnpm/[email protected]_@[email protected][email protected][email protected][email protected][email protected]/node_modules/storybook
└─┬ @storybook/[email protected] -> ./node_modules/.pnpm/@[email protected][email protected][email protected][email protected]/node_modules/@storybook/icons
└─┬ @storybook/[email protected] -> ./node_modules/.pnpm/@[email protected]_@[email protected][email protected][email protected]_storybook_e8b6a2b6cc422aba0b55c895a7f67dfa/node_modules/@storybook/addon-docs
├─┬ @mdx-js/[email protected] -> ./node_modules/.pnpm/@[email protected]/node_modules/@mdx-js/mdx
│ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/hast-util-to-jsx-runtime
│ │ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-mdx-expression
│ │ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ │ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ │ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-mdx-jsx
│ │ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ │ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-mdxjs-esm
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/rehype-recma
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/hast-util-to-estree
│ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/remark-mdx
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-mdx
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/remark-parse
│ │ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ │ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ ├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/remark-rehype
│ │ └── [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
│ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/unist-util-visit
│ └─┬ [email protected] invalid: "^1.0.0" from node_modules/.pnpm/[email protected]/node_modules/unist-util-visit -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
└─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/github-slugger
└─┬ [email protected] invalid: "^2.0.0" from node_modules/.pnpm/[email protected]/node_modules/github-slugger, "^2.0.0" from node_modules/.pnpm/[email protected]/node_modules/unist-util-visit -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/hast-util-to-html
│ └── [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm-autolink-literal
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm-footnote
│ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm-strikethrough
│ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm-table
│ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
├─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-gfm-task-list-item
│ └─┬ [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-from-markdown
│ └── [email protected] deduped -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hast
└── [email protected] -> ./node_modules/.pnpm/[email protected]/node_modules/mdast-util-to-hastBeschreibung
No response
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
apps/storybookImproovements, additions or technical updates of the storybook docsImproovements, additions or technical updates of the storybook docssecurityTracking einer Security VulnerabilityTracking einer Security Vulnerability