{"id":"GHSA-mgv2-57vj-99xc","summary":"Low severity vulnerability that affects eye.js","details":"## Test breaking\n\n### Impact\nIn v1.2.0, tests are broken: all tests are always succeeding. If tests are looking for security vulnerabilities, these were compromised.\n\n### Patches\nUsers should upgrade to `v1.2.1`\n\n### Workarounds\nUsers who don't use eye.js for looking for vulnerabilities are safe. Upgrading will just fix some bugs.\n\n### For more information\nIf you have any questions or comments about this advisory:\n* Open an issue in [EyeJS](https://github.com/arguiot/EyeJS)\n* Email us at [arguiot@gmail.com](mailto:arguiot@gmail.com)\n\n","modified":"2021-12-03T14:39:45Z","published":"2019-10-07T16:54:24Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2020-06-16T21:46:09Z","nvd_published_at":null,"cwe_ids":[],"severity":"LOW"},"references":[{"type":"WEB","url":"https://github.com/arguiot/EyeJS/security/advisories/GHSA-mgv2-57vj-99xc"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-mgv2-57vj-99xc"},{"type":"PACKAGE","url":"https://github.com/arguiot/EyeJS"}],"affected":[{"package":{"name":"eye.js","ecosystem":"npm","purl":"pkg:npm/eye.js"},"ranges":[{"type":"SEMVER","events":[{"introduced":"1.2.0"},{"fixed":"1.2.1"}]}],"versions":["1.2.0"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2019/10/GHSA-mgv2-57vj-99xc/GHSA-mgv2-57vj-99xc.json"}}],"schema_version":"1.9.0"}