## Expected Behavior Dependencies should remain up-to-date to address known security vulnerabilities. ## Current Behavior uchiwa-web ships Moment.js 2.16.0 which is subject to known vulnerabilities: * [CVE-2017-18214](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-18214) * [CWE-400](https://cwe.mitre.org/data/definitions/400.html) ## Possible Solution Upgrade Moment.js to > 2.19.3 ## Your Environment <!--- Include as many relevant details about the environment you experienced the bug in --> * Uchiwa version used: 1.3.1 * Sensu version used: * Operating System and version (e.g. Ubuntu 14.04):
Expected Behavior
Dependencies should remain up-to-date to address known security vulnerabilities.
Current Behavior
uchiwa-web ships Moment.js 2.16.0 which is subject to known vulnerabilities:
Possible Solution
Upgrade Moment.js to > 2.19.3
Your Environment