Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / RetireJS/retire.js issues and pull requests

#455 - Error: Invalid license range

Issue - State: closed - Opened by mebibite 7 days ago - 2 comments
Labels: bug

#454 - Angular CVE-2024-21490 Details wrong?

Issue - State: closed - Opened by kingthorin 19 days ago - 2 comments
Labels: question

#453 - Ignoring vulnerabilities based on severity

Issue - State: closed - Opened by glynzr 21 days ago - 3 comments

#452 - Bump elliptic from 6.5.6 to 6.5.7 in /chrome/build

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies

#450 - Detect all libraries in a minified file

Issue - State: closed - Opened by Sa-So about 2 months ago - 1 comment
Labels: enhancement

#449 - Update README.md with correct option name

Pull Request - State: closed - Opened by Sa-So about 2 months ago - 1 comment

#448 - docs: Update angular js deprecation URL

Pull Request - State: closed - Opened by mlec1 about 2 months ago

#447 - Uri extractors doesn't work for cli pathes

Issue - State: closed - Opened by PavelFil about 2 months ago
Labels: bug

#445 - Unable to build Chrome Extension

Issue - State: closed - Opened by Sa-So about 2 months ago - 3 comments
Labels: bug

#444 - --severity does not work

Issue - State: closed - Opened by cxckjh 2 months ago - 1 comment
Labels: bug

#443 - `jquery-ui` file producing results with no `vulnerabilities`

Issue - State: closed - Opened by jfeingold35 3 months ago - 2 comments
Labels: bug

#442 - Not working on Ubuntu 22.04.4 LTS (Jammy)

Issue - State: closed - Opened by MarioVilas 3 months ago - 1 comment
Labels: bug

#441 - Fixes #440 - Reduce chance of false positives for pdf.js

Pull Request - State: closed - Opened by chadlwilson 3 months ago - 1 comment

#440 - False positive with pdfjs detection due to ` [email protected] ` detection

Issue - State: closed - Opened by chadlwilson 3 months ago - 2 comments
Labels: bug

#439 - In a CycloneDX provide info on evidence/occurence

Issue - State: closed - Opened by tschroeder13 3 months ago - 2 comments
Labels: enhancement

#438 - Detect and warn about usage of polyfill.io

Issue - State: closed - Opened by coliff 3 months ago - 3 comments
Labels: enhancement

#437 - [BUG] Filename match doesn't work on windows

Issue - State: closed - Opened by stephen-carter-at-sf 4 months ago - 5 comments
Labels: bug

#436 - retirejs doesnot detect pdfobject.js

Issue - State: closed - Opened by rashmimehta300 4 months ago
Labels: enhancement

#435 - Fixes #434 - Add pdf.js detection

Pull Request - State: closed - Opened by eoftedal 4 months ago - 1 comment

#434 - retire js doesnot detect pdfjs

Issue - State: closed - Opened by rashmimehta300 4 months ago
Labels: bug

#433 - Zod upgrade to "^3.23.5"

Pull Request - State: closed - Opened by b34c0n5 4 months ago - 1 comment

#432 - update zod module

Pull Request - State: closed - Opened by b34c0n5 5 months ago - 3 comments

#431 - False positive with axios and version string inside comments in axios-mock-adapter

Issue - State: closed - Opened by yihuaf 5 months ago - 1 comment
Labels: bug

#430 - Unable to build Chrome Extension

Issue - State: closed - Opened by kwkeefer 6 months ago - 5 comments
Labels: bug

#429 - Add Mathjax to the repository

Issue - State: closed - Opened by adarisc 7 months ago - 2 comments
Labels: enhancement

#428 - Upstream code from third party maintained browser plugins

Issue - State: open - Opened by eloydegen 8 months ago - 3 comments
Labels: enhancement

#427 - wrong package version is being reported for lodash

Issue - State: closed - Opened by Ravi-Kishore-M 9 months ago - 2 comments
Labels: bug

#426 - Extend AngularJS filecontent regex to match contents of 1.8.0 AngularJS

Pull Request - State: closed - Opened by rossturner 9 months ago - 5 comments
Labels: enhancement

#425 - Switch to new repo format preserving the old

Pull Request - State: closed - Opened by eoftedal 11 months ago

#424 - Update next.js vuln: added required 'info' attribute

Pull Request - State: closed - Opened by bbossola 11 months ago - 5 comments

#423 - Invalid jsrepository.json

Issue - State: closed - Opened by aurelien-baudin 11 months ago - 2 comments

#422 - False Positive of momentjs cve-2022-24785

Issue - State: closed - Opened by ghsec 12 months ago - 4 comments
Labels: bug

#421 - --outputformat json flag doesn't seem to work

Issue - State: closed - Opened by Harika19 12 months ago - 12 comments

#420 - --ignore does not ignore given application subdirectory

Issue - State: closed - Opened by michaelfranzl about 1 year ago - 3 comments
Labels: bug

#419 - Bug in JSZip extractor

Issue - State: closed - Opened by peizhenp about 1 year ago
Labels: bug

#418 - Require Support

Issue - State: closed - Opened by 0xAmal about 1 year ago - 9 comments
Labels: question

#417 - Changed node/lib/retire.d.ts to be copied

Pull Request - State: closed - Opened by mgillam about 1 year ago

#416 - Complete type definitions for npm package

Issue - State: closed - Opened by mgillam about 1 year ago - 4 comments
Labels: enhancement

#415 - Update references

Pull Request - State: closed - Opened by kingthorin about 1 year ago

#414 - Fixed typo in README.md

Pull Request - State: closed - Opened by kostasx over 1 year ago - 1 comment

#413 - purl for datatables incorrect

Issue - State: closed - Opened by rashmimehta300 over 1 year ago
Labels: bug

#412 - Added vulnerable Highcharts detection on version below 9.0.0

Pull Request - State: closed - Opened by ghsec over 1 year ago - 5 comments

#411 - Update blogpost.md

Pull Request - State: closed - Opened by ashutoshvimal over 1 year ago - 1 comment

#410 - purl generated for few components as part cyclonedx BOM is incorrect

Issue - State: closed - Opened by rashmimehta300 over 1 year ago - 1 comment
Labels: bug

#409 - purl of moment.js is still wrong

Issue - State: closed - Opened by rashmimehta300 over 1 year ago
Labels: bug

#408 - Can retire generate cyclonedx SBOM with license of library

Issue - State: closed - Opened by rashmimehta300 over 1 year ago - 2 comments
Labels: enhancement

#407 - Can retire generate cyclonedx SBOM for all the js scanned and not just vulnerable js

Issue - State: closed - Opened by rashmimehta300 over 1 year ago - 4 comments
Labels: enhancement

#406 - Retire not generating correct purl when creating cyclonedx bom

Issue - State: closed - Opened by rashmimehta300 over 1 year ago
Labels: bug

#405 - Downstream dependency vm2 has critical vulnerability CVE-2023-29017

Issue - State: closed - Opened by markberryms over 1 year ago - 11 comments

#404 - Invalid property name, because of zod lib

Issue - State: closed - Opened by lubotsenov over 1 year ago - 1 comment
Labels: wontfix

#403 - Remove the "" results for duplicate components in cyclonedxJSON output.

Pull Request - State: closed - Opened by jhodgkinson-splunk over 1 year ago - 2 comments

#402 - cycloneDXJSON "" components

Issue - State: closed - Opened by jhodgkinson-splunk over 1 year ago - 1 comment
Labels: bug

#401 - Added CKEditor Vulnerable version less than 4.21.0

Pull Request - State: closed - Opened by enggfraz over 1 year ago - 1 comment

#400 - Added the CKEditor Library for Vulnerable Versions

Pull Request - State: closed - Opened by enggfraz over 1 year ago - 1 comment

#399 - False positives on jquery-ui 1.13.2 and ckeditor.js 4.20.2

Issue - State: closed - Opened by freedmandil over 1 year ago - 3 comments

#398 - Add chart.js CVE-2020-7746

Issue - State: closed - Opened by samstiv over 1 year ago

#397 - Invalid CycloneDX output

Issue - State: closed - Opened by bretik over 1 year ago - 4 comments

#395 - Bump vm2 from 3.9.9 to 3.9.11 in /node

Pull Request - State: closed - Opened by dependabot[bot] almost 2 years ago
Labels: dependencies

#394 - Wrong CVE Scores

Issue - State: closed - Opened by DorShaer about 2 years ago - 2 comments

#393 - Update jsrepository.json

Pull Request - State: closed - Opened by enggfraz about 2 years ago

#392 - Update jsrepository.json

Pull Request - State: closed - Opened by enggfraz about 2 years ago

#391 - Update jsrepository.json for Momentjs CVE-2022-31129

Pull Request - State: closed - Opened by enggfraz about 2 years ago - 1 comment

#389 - RetireJS produces an error exit code on successful run

Issue - State: closed - Opened by UgniusV about 2 years ago - 1 comment

#388 - Adds jquery-ui CVE-2022-31160

Pull Request - State: closed - Opened by bjoernweide about 2 years ago - 1 comment

#387 - DOMPurify 1.0.11 is not recognised

Issue - State: closed - Opened by dryfish about 2 years ago

#386 - Add CVE-2019-14863 - AngularJS

Pull Request - State: closed - Opened by kingthorin about 2 years ago - 3 comments

#385 - Add AngularJS EoL?

Issue - State: closed - Opened by kingthorin about 2 years ago - 9 comments

#384 - Add detection test cases

Pull Request - State: closed - Opened by eoftedal about 2 years ago

#383 - Upgrade Chrome browser plugin to Manifest V3

Issue - State: closed - Opened by ArisBee about 2 years ago - 1 comment

#382 - Add tracking of vulnerabilities in jquery.dataTables

Issue - State: closed - Opened by trigger1919 about 2 years ago - 2 comments

#381 - Check hash of js file against known database

Issue - State: closed - Opened by naturallymitchell over 2 years ago - 1 comment

#380 - Need help adding alasql.js to the vulnerability database

Issue - State: closed - Opened by globeone over 2 years ago - 6 comments

#379 - Add vulns markdown-it.js & jszip.js

Pull Request - State: closed - Opened by tomwolf2000 over 2 years ago

#378 - Fix axios typo

Pull Request - State: closed - Opened by niekcandaele over 2 years ago - 1 comment

#377 - Add axios.js vulns

Pull Request - State: closed - Opened by tomwolf2000 over 2 years ago - 1 comment

#375 - BUG

Issue - State: closed - Opened by mmasaid over 2 years ago - 1 comment

#374 - JS repo fix

Pull Request - State: closed - Opened by kingthorin over 2 years ago - 4 comments

#373 - Report generation from Retire JS

Issue - State: closed - Opened by khopithan over 2 years ago - 4 comments

#372 - Fix typo in CVE value for moment.js and bassmaster

Pull Request - State: closed - Opened by gonzoyumo over 2 years ago - 1 comment

#371 - Remove comma to fix parsing of npmrepository.json

Pull Request - State: closed - Opened by saifsabir97 over 2 years ago - 2 comments

#370 - Fixing invalid json

Pull Request - State: closed - Opened by jiashuChen over 2 years ago - 3 comments

#369 - Fix broken json

Pull Request - State: closed - Opened by pkarman over 2 years ago

#368 - Remove comma breaking json format

Pull Request - State: closed - Opened by DeanF over 2 years ago - 3 comments

#367 - The npmrepository.json that retire.js is calling is invalid json.

Issue - State: closed - Opened by jsakai over 2 years ago - 2 comments

#366 - moment.js: add vulns

Pull Request - State: closed - Opened by noraj over 2 years ago - 1 comment

#365 - Website on GH Pages and CORS

Issue - State: closed - Opened by noraj over 2 years ago - 1 comment

#364 - inconsistent datatype in npmrepository.json line #792

Issue - State: closed - Opened by shreyasHpandya over 2 years ago - 1 comment
Labels: wontfix

#363 - Dependency ansi-regex has high severity CVE

Issue - State: closed - Opened by jbeisen over 2 years ago - 1 comment

#362 - Add missing jquery-ui CVEs

Pull Request - State: closed - Opened by jeremylong over 2 years ago - 1 comment

#361 - Add Bootstrap CVE-2016-10735

Issue - State: closed - Opened by kingthorin over 2 years ago - 3 comments

#360 - Chore: Remove colors from retire.js

Issue - State: closed - Opened by eoftedal over 2 years ago
Labels: enhancement

#359 - fix: pin colors to prevent dos in newer version

Pull Request - State: closed - Opened by ewanharris over 2 years ago - 2 comments

#358 - Colors dependency is broken

Issue - State: closed - Opened by wasmitnetzen over 2 years ago - 1 comment

#356 - JSON output format doesn't work as expected

Issue - State: closed - Opened by jbeisen about 3 years ago - 2 comments