kach / nearley

📜🔜🌲 Simple, fast, powerful parser toolkit for JavaScript.

Home Page:https://nearley.js.org

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

XSS vulnerability through dependency `railroad-diagrams`

voidvoxel opened this issue · comments

Snyk is reporting a medium-risk XSS vulnerability through dependency railroad-diagrams.

I believe I've fixed this vulnerability within the dependency, but I still need to verify this resolves the issue before creating a pull request.

Okay, it's been confirmed. This change does resolve the issue. I've already created the pull request and am awaiting a response.