-
-
Notifications
You must be signed in to change notification settings - Fork 95
New issue
Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? # to your account
npm audit : "Moderate: Regular Expression Denial of Service" #95
Comments
Hi, we depend on Marked ^0.6.1 => automatically updated to ^0.6.2 https://david-dm.org/hexojs/hexo-renderer-marked |
When I run
I agree with your assumption that npm may install updated version of |
@sanori
|
A update: hexo-renderer-marked@1.0.0 is just published, install the latest version now
|
I confirmed that |
due to the dependency of marked 0.6.1.
The text was updated successfully, but these errors were encountered: