High vulnerability : Missing Origin Validation in Package webpack-dev-server, Dependency of react-scripts





.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty{ height:90px;width:728px;box-sizing:border-box;
}







6















I already spent one whole day trying to fix this issue. I try to keep the description short.




  • Working on Express-Mongo-React web app(MERN)

  • Everything is working properly in local system.

  • I have referred this tutorial to host my project in AWS server (Dev Mode)

  • I have 'Client' folder where i keep all my react code.

  • After uploading code in server, I run 'npm install'


  • All the dependencies are installed properly except one.



    i.e. React-scripts




I see this error message after installing this react-scripts package



'found 1 high severity vulnerability'



'npm audit' gives following summary


High : Missing Origin Validation
Package : webpack-dev-server
Patched in : >=3.1.11
Dependency of: react-scripts


I restarted AWS instance, started everything from scratch. Nothing helped.



What could be the root cause?










share|improve this question


















  • 1





    I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

    – Babalola Rotimi
    Jan 3 at 13:39




















6















I already spent one whole day trying to fix this issue. I try to keep the description short.




  • Working on Express-Mongo-React web app(MERN)

  • Everything is working properly in local system.

  • I have referred this tutorial to host my project in AWS server (Dev Mode)

  • I have 'Client' folder where i keep all my react code.

  • After uploading code in server, I run 'npm install'


  • All the dependencies are installed properly except one.



    i.e. React-scripts




I see this error message after installing this react-scripts package



'found 1 high severity vulnerability'



'npm audit' gives following summary


High : Missing Origin Validation
Package : webpack-dev-server
Patched in : >=3.1.11
Dependency of: react-scripts


I restarted AWS instance, started everything from scratch. Nothing helped.



What could be the root cause?










share|improve this question


















  • 1





    I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

    – Babalola Rotimi
    Jan 3 at 13:39
















6












6








6








I already spent one whole day trying to fix this issue. I try to keep the description short.




  • Working on Express-Mongo-React web app(MERN)

  • Everything is working properly in local system.

  • I have referred this tutorial to host my project in AWS server (Dev Mode)

  • I have 'Client' folder where i keep all my react code.

  • After uploading code in server, I run 'npm install'


  • All the dependencies are installed properly except one.



    i.e. React-scripts




I see this error message after installing this react-scripts package



'found 1 high severity vulnerability'



'npm audit' gives following summary


High : Missing Origin Validation
Package : webpack-dev-server
Patched in : >=3.1.11
Dependency of: react-scripts


I restarted AWS instance, started everything from scratch. Nothing helped.



What could be the root cause?










share|improve this question














I already spent one whole day trying to fix this issue. I try to keep the description short.




  • Working on Express-Mongo-React web app(MERN)

  • Everything is working properly in local system.

  • I have referred this tutorial to host my project in AWS server (Dev Mode)

  • I have 'Client' folder where i keep all my react code.

  • After uploading code in server, I run 'npm install'


  • All the dependencies are installed properly except one.



    i.e. React-scripts




I see this error message after installing this react-scripts package



'found 1 high severity vulnerability'



'npm audit' gives following summary


High : Missing Origin Validation
Package : webpack-dev-server
Patched in : >=3.1.11
Dependency of: react-scripts


I restarted AWS instance, started everything from scratch. Nothing helped.



What could be the root cause?







node.js amazon-web-services amazon-ec2 webpack-dev-server react-scripts






share|improve this question













share|improve this question











share|improve this question




share|improve this question










asked Jan 3 at 10:57









DarshnDarshn

97411023




97411023








  • 1





    I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

    – Babalola Rotimi
    Jan 3 at 13:39
















  • 1





    I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

    – Babalola Rotimi
    Jan 3 at 13:39










1




1





I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

– Babalola Rotimi
Jan 3 at 13:39







I think a fix for this should be out soon. You can follow on Github github.com/facebook/create-react-app/issues/6109

– Babalola Rotimi
Jan 3 at 13:39














0






active

oldest

votes












Your Answer






StackExchange.ifUsing("editor", function () {
StackExchange.using("externalEditor", function () {
StackExchange.using("snippets", function () {
StackExchange.snippets.init();
});
});
}, "code-snippets");

StackExchange.ready(function() {
var channelOptions = {
tags: "".split(" "),
id: "1"
};
initTagRenderer("".split(" "), "".split(" "), channelOptions);

StackExchange.using("externalEditor", function() {
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled) {
StackExchange.using("snippets", function() {
createEditor();
});
}
else {
createEditor();
}
});

function createEditor() {
StackExchange.prepareEditor({
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader: {
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
},
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
});


}
});














draft saved

draft discarded


















StackExchange.ready(
function () {
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f54020963%2fhigh-vulnerability-missing-origin-validation-in-package-webpack-dev-server-de%23new-answer', 'question_page');
}
);

Post as a guest















Required, but never shown

























0






active

oldest

votes








0






active

oldest

votes









active

oldest

votes






active

oldest

votes
















draft saved

draft discarded




















































Thanks for contributing an answer to Stack Overflow!


  • Please be sure to answer the question. Provide details and share your research!

But avoid



  • Asking for help, clarification, or responding to other answers.

  • Making statements based on opinion; back them up with references or personal experience.


To learn more, see our tips on writing great answers.




draft saved


draft discarded














StackExchange.ready(
function () {
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f54020963%2fhigh-vulnerability-missing-origin-validation-in-package-webpack-dev-server-de%23new-answer', 'question_page');
}
);

Post as a guest















Required, but never shown





















































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown

































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown







Popular posts from this blog

MongoDB - Not Authorized To Execute Command

How to fix TextFormField cause rebuild widget in Flutter

in spring boot 2.1 many test slices are not allowed anymore due to multiple @BootstrapWith