mirror of
https://github.com/verdaccio/verdaccio.git
synced 2025-02-10 23:39:31 -05:00
A lightweight Node.js private proxy registry
dockerhelmhelm-chartsjavascriptkubernetesnodejsnpmpnpmprivate-npmregistryregistry-proxysponsorverdaccioyarn
* Update node to 14.18.3 v14.18.3 of node fixes a bunch of security vulnerabilities. Specifically: - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22921 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22930 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22918 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22940 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22960 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22959 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44532 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44533 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44531 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22931 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3672 * Use node:14-alpine for image * Fix docker build by installing `python2` instead of `python` I simply followed what was done in https://github.com/verdaccio/verdaccio/pull/2644 |
||
---|---|---|
.github | ||
.vscode | ||
.yarn | ||
assets | ||
bin | ||
conf | ||
contrib/aws | ||
debug | ||
docker-bin | ||
docker-examples | ||
docs | ||
scripts | ||
src | ||
systemd | ||
test | ||
types | ||
wiki | ||
.all-contributorsrc | ||
.dockerignore | ||
.editorconfig | ||
.env | ||
.eslintignore | ||
.eslintrc | ||
.gitignore | ||
.npmignore | ||
.npmrc | ||
.nvmrc | ||
.prettierignore | ||
.prettierrc.json | ||
.secrets-baseline | ||
.sonarcloud.properties | ||
.stylelintrc | ||
.yarnrc.yml | ||
babel.config.js | ||
CHANGELOG.md | ||
CODE_OF_CONDUCT.md | ||
codecov.yml | ||
CONTRIBUTING.md | ||
CONTRIBUTORS.md | ||
crowdin.yaml | ||
docker-compose.yaml | ||
Dockerfile | ||
index.js | ||
jest.config.js | ||
jestEnvironment.js | ||
LICENSE | ||
package.json | ||
README.md | ||
SECURITY.md | ||
security.txt | ||
tsconfig.json | ||
yarn.lock |
Version 4
⚠️⚠️ Verdaccio 4.x is deprecated and won't longer receive security support, please upgrade to 5.x or higher ⚠️⚠
Please read the migration guidelines.
Open Collective Sponsors
Support this project by becoming a sponsor. Your logo will show up here with a link to your website. [Become a sponsor]
Open Collective Backers
Thank you to all our backers! 🙏 [Become a backer]
Special Thanks
Thanks to the following companies to help us to achieve our goals providing free open source licenses.
License
Verdaccio is MIT licensed
The Verdaccio documentation and logos (excluding /thanks, e.g., .md, .png, .sketch) files within the /assets folder) is Creative Commons licensed.