You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I get a dependabot warning that this is a critical security vulnerability, but now can't update due to this package hard-locking minimist's version. There also already is a PR to update this dependency: #710. Maybe somebody can have a look at this with some priority?
Also it might be worth considering to use a progressive lock (e.g. ^1.2.6) instead of a hard lock for minimist (and other dependencies) instead.
yanovich
pushed a commit
to yanovich/prettierx
that referenced
this issue
May 20, 2022
One of the dependencies used in this project, minimist, should be updated from
1.2.5
to1.2.6
to include this security fix.The text was updated successfully, but these errors were encountered: