engine.io
Advanced tools
Comparing version 0.7.9 to 0.7.10
0.7.10 / 2013-10-28 | ||
=================== | ||
* package: bump `engine.io-client` | ||
* package: update "ws" to v0.4.31 | ||
0.7.9 / 2013-08-30 | ||
@@ -3,0 +9,0 @@ ================== |
{ | ||
"name": "engine.io" | ||
, "version": "0.7.9" | ||
, "version": "0.7.10" | ||
, "description": "The realtime engine behind Socket.IO. Provides the foundation of a bidirectional connection between client and server" | ||
@@ -19,3 +19,3 @@ , "main": "./lib/engine.io" | ||
"debug": "0.6.0" | ||
, "ws": "https://github.com/TooTallNate/ws/archive/0cb9fe7a21a7a7c200f68b57916d1d62b66082a1.tar.gz" | ||
, "ws": "0.4.31" | ||
, "engine.io-parser": "0.3.0" | ||
@@ -28,3 +28,3 @@ , "base64id": "0.1.0" | ||
, "superagent": "*" | ||
, "engine.io-client": "0.7.9" | ||
, "engine.io-client": "0.7.10" | ||
, "s": "*" | ||
@@ -31,0 +31,0 @@ } |
HTTP dependency
Supply chain riskContains a dependency which resolves to a remote HTTP URL which could be used to inject untrusted code and reduce overall package reliability.
Found 1 instance in 1 package
121706
0
+ Addedcommander@0.6.1(transitive)
+ Addednan@0.3.2(transitive)
+ Addedoptions@0.0.6(transitive)
+ Addedtinycolor@0.0.1(transitive)
+ Addedws@0.4.31(transitive)
Updatedws@0.4.31