We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent ad64989 commit 51f123fCopy full SHA for 51f123f
packages/hint-no-vulnerable-javascript-libraries/src/hint.ts
@@ -166,9 +166,11 @@ export default class NoVulnerableJavascriptLibrariesHint implements IHint {
166
const version = removeTagsFromVersion(lib.version) /* istanbul ignore next */ || '';
167
168
try {
169
- if (semver.satisfies(version, vuln.semver.vulnerable[0])) {
170
- vulns.push(vuln);
171
- }
+ vuln.semver.vulnerable.forEach((vulnVersion: string) => {
+ if (semver.satisfies(version, vulnVersion)) {
+ vulns.push(vuln);
172
+ }
173
+ });
174
} catch (e) {
175
logger.error(`Version ${version} of ${lib.name} isn't semver compliant`);
176
}
0 commit comments