carousel-js
Advanced tools
Comparing version 1.4.1 to 1.5.0
{ | ||
"name": "carousel-js", | ||
"version": "1.4.1", | ||
"version": "1.5.0", | ||
"homepage": "https://github.com/mkay581/carousel-js", | ||
@@ -32,8 +32,8 @@ "authors": [ | ||
"element-kit": "^1.0.5", | ||
"jquery": "^2.1.3", | ||
"jquery": "^2.2.1", | ||
"module.js": "^2.2.4", | ||
"promise": "^7.0.0", | ||
"resource-manager-js": "^1.0.1", | ||
"underscore": "~1.8.3" | ||
"promise": "^7.1.1", | ||
"resource-manager-js": "^1.2.1", | ||
"underscore": "^1.8.3" | ||
} | ||
} |
@@ -14,12 +14,9 @@ 'use strict'; | ||
standalone: 'Carousel' | ||
} | ||
}, | ||
min: { | ||
files: { | ||
}, | ||
minifyFiles: { | ||
'dist/carousel-min.js': ['dist/carousel.js'] | ||
} | ||
}, | ||
bannerFiles: ['dist/*'] | ||
}, | ||
banner: { | ||
files: ['dist/*'] | ||
}, | ||
tests: { | ||
@@ -26,0 +23,0 @@ mocha: { |
{ | ||
"name": "carousel-js", | ||
"version": "1.4.1", | ||
"version": "1.5.0", | ||
"description": "A carousel class", | ||
@@ -27,13 +27,13 @@ "repository": { | ||
"element-kit": "^1.0.5", | ||
"jquery": "^2.1.3", | ||
"jquery": "^2.2.1", | ||
"module.js": "^2.2.4", | ||
"promise": "^7.0.0", | ||
"resource-manager-js": "^1.0.1", | ||
"promise": "^7.1.1", | ||
"resource-manager-js": "^1.2.1", | ||
"underscore": "^1.8.3" | ||
}, | ||
"devDependencies": { | ||
"build-tools": "^1.6.0", | ||
"build-tools": "^2.4.0", | ||
"grunt": "^0.4.5", | ||
"grunt-cli": "^0.1.13", | ||
"sinon": "^1.14.1" | ||
"sinon": "^1.17.3" | ||
}, | ||
@@ -40,0 +40,0 @@ "scripts": { |
Sorry, the diff of this file is too big to display
Sorry, the diff of this file is too big to display
Uses eval
Supply chain riskPackage uses eval() which is a dangerous function. This prevents the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses eval() which is a dangerous function. This prevents the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
12
671712
14953
8
Updatedjquery@^2.2.1
Updatedpromise@^7.1.1
Updatedresource-manager-js@^1.2.1