express-middleware
Advanced tools
{ | ||
"name": "express-middleware", | ||
"version": "1.7.0", | ||
"version": "1.8.0", | ||
"description": "Set of middlewares for Chauffeur-Privé", | ||
@@ -17,2 +17,3 @@ "keywords": [ | ||
"country-language": "0.1.7", | ||
"eslint-config-cp": "github:transcovo/eslint-config-cp#1.1.0", | ||
"http-errors": "1.5.1", | ||
@@ -22,3 +23,3 @@ "ipaddr.js": "1.2.0", | ||
"morgan": "1.7.0", | ||
"uuid": "^3.0.1" | ||
"uuid": "3.0.1" | ||
}, | ||
@@ -25,0 +26,0 @@ "devDependencies": { |
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
NPM Shrinkwrap
Supply chain riskPackage contains a shrinkwrap file. This may allow the package to bypass normal install procedures.
Found 1 instance in 1 package
85938
82.92%2169
102.71%11
10%2
Infinity%