Skip to content

Quill/react-quill warnings for MS Outlook and OneDrive apps #38

@JacobChandler

Description

@JacobChandler

Receiving quill/react-quill warnings

experience-productivity-extensions-main>npm install

up to date, audited 985 packages in 3s

168 packages are looking for funding
  run `npm fund` for details

8 vulnerabilities (3 moderate, 5 high)

To address all issues possible, run:
  npm audit fix --force

Some issues need review, and may require choosing
a different dependency.

Run `npm audit` for details.

C:\Users\ucs_jrc\OneDrive - Sam Houston State University\experience\experience-productivity-extensions-main>npm audit fix --force
npm warn using --force Recommended protections disabled.
npm warn audit No fix available for @ellucian/react-design-system@
npm warn audit Updating webpack-dev-server to 4.15.2, which is outside your stated dependency range.

added 4 packages, removed 25 packages, changed 4 packages, and audited 964 packages in 4s

165 packages are looking for funding
  run `npm fund` for details

# npm audit report

quill  <=1.3.7
Severity: moderate
Cross-site Scripting in quill - https://github.com/advisories/GHSA-4943-9vgg-gr5r
No fix available
node_modules/quill
  react-quill  >=0.0.3
  Depends on vulnerable versions of quill
  node_modules/react-quill
    @ellucian/react-design-system
    Depends on vulnerable versions of react-quill
    node_modules/@ellucian/react-design-system

3 moderate severity vulnerabilities

Some issues need review, and may require choosing
a different dependency.

C:\Users\ucs_jrc\OneDrive - Sam Houston State University\experience\experience-productivity-extensions-main>npm update quill

up to date, audited 964 packages in 2s

165 packages are looking for funding
run npm fund for details

3 moderate severity vulnerabilities

Some issues need review, and may require choosing
a different dependency.

Run npm audit for details.

C:\Users\ucs_jrc\OneDrive - Sam Houston State University\experience\experience-productivity-extensions-main>npm audit fix --force
npm warn using --force Recommended protections disabled.
npm warn audit No fix available for @ellucian/react-design-system@

up to date, audited 964 packages in 2s

165 packages are looking for funding
run npm fund for details

npm audit report

quill <=1.3.7
Severity: moderate
Cross-site Scripting in quill - GHSA-4943-9vgg-gr5r
No fix available
node_modules/quill
react-quill >=0.0.3
Depends on vulnerable versions of quill
node_modules/react-quill
@ellucian/react-design-system
Depends on vulnerable versions of react-quill
node_modules/@ellucian/react-design-system

3 moderate severity vulnerabilities

Some issues need review, and may require choosing
a different dependency.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions