@highlight-ui/dialog
Advanced tools
Comparing version 9.1.5 to 9.1.6
{ | ||
"name": "@highlight-ui/dialog", | ||
"version": "9.1.5", | ||
"version": "9.1.6", | ||
"author": "Personio GmbH & Co. KG", | ||
@@ -44,4 +44,4 @@ "main": "dist/cjs/index.js", | ||
"dependencies": { | ||
"@highlight-ui/button": "^12.1.5", | ||
"@highlight-ui/tooltip": "^4.1.8", | ||
"@highlight-ui/button": "^12.1.6", | ||
"@highlight-ui/tooltip": "^4.1.9", | ||
"@highlight-ui/typography": "^6.2.5", | ||
@@ -59,3 +59,3 @@ "@highlight-ui/utils-commons": "^2.4.4", | ||
}, | ||
"gitHead": "68cd45c421de0bab020025cb872fa0d5fa273215" | ||
"gitHead": "17126d984a889541794c1516009187e2b4485ef0" | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Empty package
Supply chain riskPackage does not contain any code. It may be removed, is name squatting, or the result of a faulty package publish.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
1
8640
3
0
Updated@highlight-ui/button@^12.1.6
Updated@highlight-ui/tooltip@^4.1.9