Code Monkey home page Code Monkey logo

sterling-dataviz's Introduction

sterling-dataviz's People

Contributors

allcontributors[bot] avatar cal-smith avatar carbon-bot avatar darsi-an avatar dependabot[bot] avatar johnpeng47 avatar licarijd avatar moores2 avatar natashadecoste avatar scottdickerson avatar sparikh1594 avatar stanislavgeorgiev avatar sterling-bot avatar t-mullen avatar theiliad avatar zrianinamariia avatar zvonimirfras avatar

Stargazers

 avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar

sterling-dataviz's Issues

Create environment to run d3.js v5 in typescript using .net web application (framework)

We are able to successfully run your code in Visual studio code. But we want to run same functionality in Microsoft Visual Studio 2017/19.

We want to create environment to run d3.js v5 in typescript using .net web application (framework) in Microsoft Visual Studio. We prefer to use nuget package manager instead of npm command.

Your help is highly appriciated.

Cross-site Scripting (XSS)

I am submitting an XSS vulnerability

  • Feature request
  • Design defect
  • Source code defect
  • Demo/documentation defect
  • Other

charts version: 0.23.2

Issue description: The application is not sanitizing the metadata of the charts while processing the data from the user input results in the execution of the arbitrary script

Steps to produce the issue:

  1. Open NPM repo https://www.npmjs.com/package/@ibm-sterling/charts
  2. Open the sample project in the CodeSandbox
  3. Use the payload '><img/&#09;&#10;&#11; src=~ onerror=alert('XSS')> and place it in the label: "Dataset 1----PAYLOAD---->",
  4. XSS payload will get executed.

Current behaviour: Executing the arbitrary script

Expected behaviour: Should sanitize the user input

Screenshot or recording

XSS

Angular build devkit issue

Hi,
When we are integrating sterling donut chart in angular 6 app. It causes below mentioned issue while creating a build.

ERROR in ./node_modules/@ibm-sterling/charts-angular/fesm5/ibm-sterling-charts-angular.js Module build failed (from ./node_modules/@angular-devkit/build-optimizer/src/build-optimizer/webpack-loader.js): TypeError: Cannot read property 'kind' of undefined at isAngularDecoratorMetadataExpression (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:242:35) at checkNodeForDecorators (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:67:21) at visitNodes (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14809:30) at Object.forEachChild (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:15033:24) at checkNodeForDecorators (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:58:31) at visitNode (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14800:24) at Object.forEachChild (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14928:21) at checkNodeForDecorators (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:58:31) at visitNode (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14800:24) at Object.forEachChild (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14985:24) at checkNodeForDecorators (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:58:31) at visitNode (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14800:24) at Object.forEachChild (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14996:24) at checkNodeForDecorators (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/@angular-devkit/build-optimizer/src/transforms/scrub-file.js:58:31) at visitNode (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14800:24) at Object.forEachChild (/Users/swatijaiswal/Documents/WOO-frontend/node_modules/typescript/lib/typescript.js:14893:21)

Our dependencies :
“dependencies”: {
“@angular/animations”: “6.1.10”,
“@angular/common”: “6.1.10”,
“@angular/compiler”: “6.1.10”,
“@angular/core”: “6.1.10”,
“@angular/forms”: “6.1.10”,
“@angular/http”: “6.1.10”,
“@angular/platform-browser”: “6.1.10”,
“@angular/platform-browser-dynamic”: “6.1.10”,
“@angular/router”: “6.1.10”,
“@buc/core-angular”: “0.1911.2”,
“@carbon/colors”: “10.4.1”,
“@carbon/icons-angular”: “10.4.0”,
“@carbon/layout”: “10.5.0”,
“@carbon/themes”: “10.6.1”,
“@carbon/type”: “10.5.1”,
“@ibm-sterling/charts”: “^0.23.1”,
“@ibm-sterling/charts-angular”: “^0.23.1”,
“@ibm/plex”: “^2.0.0”,
“@ngx-translate/core”: “^10.0.2”,
“@ngx-translate/http-loader”: “^3.0.1”,
“carbon-components”: “10.7.4”,
“carbon-components-angular”: “3.27.0”,
“core-js”: “2.4.1”,
“d3": “^5.14.2”,
“lodash”: “^4.17.14”,
“messageformat”: “2.2.1”,
“ngx-translate-messageformat-compiler”: “4.4.0”,
“ol”: “^5.3.3”,
“rxjs”: “6.4.0”,
“zone.js”: “0.8.29”
}

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.