question-mark
Stuck on an issue?

Lightrun Answers was designed to reduce the constant googling that comes with debugging 3rd party libraries. It collects links to all the places you might be looking at while hunting down a tough bug.

And, if you’re still stuck at the end, we’re happy to hop on a call to see how we can help out.

Several warnings for security problems

See original GitHub issue

Describe the bug

Github send an alert for security vulnerability after create a project due security risk, but after run yarn audit several more problems appears generate the follow result

image

Environment

System: OS: macOS 10.14.5 CPU: (4) x64 Intel® Core™ i5-5257U CPU @ 2.70GHz Binaries: Node: 8.15.0 - ~/.nvm/versions/node/v8.15.0/bin/node Yarn: 1.16.0 - /usr/local/bin/yarn npm: 6.9.0 - ~/.nvm/versions/node/v8.15.0/bin/npm Browsers: Chrome: 75.0.3770.100 Firefox: Not Found Safari: 12.1.1 npmPackages: react: ^16.8.6 => 16.8.6 react-dom: ^16.8.6 => 16.8.6 react-scripts: 3.0.1 => 3.0.1 npmGlobalPackages: create-react-app: Not Found

Steps to reproduce

Basic upload a project to GitHub or run yarn audit in a brand new project

Expected behavior

No vulnerabilities alerts

Actual behavior

Severity: 12969 High vulnerabilities found

Reproducible demo

https://github.com/flpms/meeting-timer.git

Issue Analytics

  • State:closed
  • Created 4 years ago
  • Comments:12 (4 by maintainers)

github_iconTop GitHub Comments

1reaction
Fenntasycommented, Jul 16, 2019

That’s a bit annoying when using yarn though as there is no yarn audit fix at the moment. But I suppose all will be fixed in good times.

1reaction
heyimalexcommented, Jul 13, 2019

Hm, I thought we fixed this yesterday. Did you try recovering your dependencies? Can you confirm it’s still happening?

Read more comments on GitHub >

github_iconTop Results From Across the Web

Alerts - CISA
Alerts provide timely information about current security issues, vulnerabilities, and exploits. Sign up to receive these technical alerts in your inbox or ...
Read more >
Computer Security Warnings You Shouldn't Ignore
Threat detected. And here's the real doozy: A warning that your software has actually detected malware, a virus, or some other threat. The ......
Read more >
The Problem with Your Computer's Security Warnings - Ideas42
Unfortunately, security warnings like these are disregarded every day, exposing vital technology to cyber-attacks such as viruses and malware. But this isn't ...
Read more >
Harnessing the Challenges and Solutions to Improve Security ...
In general, security warnings can be grouped into five different types, i.e., dialog box systems, in-place systems, notification systems, ...
Read more >
Manage warnings about unsafe sites - Google Chrome Help
You'll see a warning if the content you're trying to see is dangerous or deceptive. These sites are often called "phishing" or "malware"...
Read more >

github_iconTop Related Medium Post

No results found

github_iconTop Related StackOverflow Question

No results found

github_iconTroubleshoot Live Code

Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start Free

github_iconTop Related Reddit Thread

No results found

github_iconTop Related Hackernoon Post

No results found

github_iconTop Related Tweet

No results found

github_iconTop Related Dev.to Post

No results found

github_iconTop Related Hashnode Post

No results found