Skip to content

Vulnerabilities in Package #25

@G26Bandit

Description

@G26Bandit

Bug report for Cloudinary React Native SDK

Before proceeding, please update to latest version and test if the issue persists

Describe the bug in a sentence or two.

During install process, npm says there are 18 vulnerabilities (14 moderate, 4 high). It installs just fine, but I am a little less than thrilled to be adding it to my project.

Issue Type (Can be multiple)

[ ] Build - Can’t install or import the SDK
[ ] Performance - Performance issues
[ ] Behaviour - Functions aren’t working as expected (Such as generate URL)
[ ] Documentation - Inconsistency between the docs and behaviour
[x] Other (Specify) - Security

Steps to reproduce

Install package using npm

Error screenshots or Stack Trace (if applicable)

cloudinary install security issues

Build/Dependency management

[x] Cocoa-Pods
[ ] Carthage
[ ] Manual import
[x] Other (Specify) - npm

Is the issue reproducible only on a specific device?

[x] No - not tested, but given the circumstances, I wouldn't think so
[ ] Yes (specify device model + iOS/Android version)

Versions and Libraries (fill in the version numbers)

React Native Cloudinary SDK version - 1.0.0
OSX (on the dev environment) - 14.5

Repository
If possible, please provide a link to a reproducible repository that showcases the problem

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions