Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug]: #2121

Closed
PhongNguyen-Mercatus opened this issue Jan 21, 2025 · 1 comment
Closed

[Bug]: #2121

PhongNguyen-Mercatus opened this issue Jan 21, 2025 · 1 comment
Labels
bug Something isn't working invalid This doesn't seem right

Comments

@PhongNguyen-Mercatus
Copy link

Version

v5

Reanimated Version

v3

Gesture Handler Version

v2

Platforms

iOS, Android

What happened?

I have verified the vulnerabilities of packages in project and found:

Image

My packages:

  • "react-native": "0.73.8",
  • "@gorhom/bottom-sheet": "5.0.6",
  • "react-native-reanimated": "3.14.0",
  • "react-native-gesture-handler": "2.17.1",

Reproduction steps

Execute: Yarn audit

Reproduction sample

None

Relevant log output

┌───────────────┬──────────────────────────────────────────────────────────────┐
│ moderate      │ Predictable results in nanoid generation when given          │
│               │ non-integer values                                           │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package       │ nanoid                                                       │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Patched in>=3.3.8                                                      │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ @gorhom/bottom-sheet                                         │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path          │ @gorhom/bottom-sheet > @gorhom/portal > nanoid               │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info     │ https://www.npmjs.com/advisories/1101163                     │
└───────────────┴──────────────────────────────────────────────────────────────┘
@PhongNguyen-Mercatus PhongNguyen-Mercatus added the bug Something isn't working label Jan 21, 2025
Copy link

Hello @PhongNguyen-Mercatus 👋, this issue is being automatically closed and locked because it does not follow the issue template.

@github-actions github-actions bot added the invalid This doesn't seem right label Jan 21, 2025
@github-actions github-actions bot locked as spam and limited conversation to collaborators Jan 21, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
bug Something isn't working invalid This doesn't seem right
Projects
None yet
Development

No branches or pull requests

1 participant