-
Notifications
You must be signed in to change notification settings - Fork 119
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Security issue - fabric.js #174
Comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
The version of fabric.js in the repo is quite out of date, this library has had an update to include a newer version of onchange, which itself had a number of security vulnerabilities patched.
See here:
fabricjs/fabric.js#7591
And the changes to onchange here:
https://github.com/Qard/onchange/pulls?q=is%3Apr+is%3Aclosed
Can the version of fabric.js be updated on this repo to get those changes. I see that it is a dependency of darkroom.js which itself looks to be no longer maintained.
The text was updated successfully, but these errors were encountered: