npm audit report - issues reported in sailloger and windy plugins dependancies
-
npm audit report
form-data <2.5.4
Severity: critical
form-data uses unsafe random function in form-data for choosing boundary - https://github.com/advisories/GHSA-fjxv-7rqg-78g4
No fix available
node_modules/request/node_modules/form-data
request *
Depends on vulnerable versions of form-data
Depends on vulnerable versions of tough-cookie
node_modules/requestsignalk-saillogger * Depends on vulnerable versions of request node_modules/signalk-saillogger signalk-windy * -
@piotr-pingo we don't use either form-data and tough-cookie, these come as dependencies for some of the libraries but they are not used by Saillogger. This should have no impact to the plugin.
-
ok thanks, just wanted to let you know as the warning was mentioning 2 your plugins. I will happy ignore it now