We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
# npm audit report protobufjs 6.10.0 - 7.2.3 Severity: high protobufjs Prototype Pollution vulnerability - https://github.com/advisories/GHSA-h755-8qp9-cq85 fix available via `npm audit fix --force` Will install [email protected], which is a breaking change node_modules/protobufjs @grpc/proto-loader 0.6.0-pre1 - 0.6.13 Depends on vulnerable versions of protobufjs node_modules/@grpc/proto-loader @grpc/grpc-js 1.4.0 - 1.6.7 Depends on vulnerable versions of @grpc/proto-loader node_modules/@grpc/grpc-js 3 high severity vulnerabilities To address all issues (including breaking changes), run: npm audit fix --force
The text was updated successfully, but these errors were encountered:
Bumping to protobufjs 7 will be a breaking change. Also a separate package for the CLI:
Upgrading to protobufjs 7 would also allow addressing other issues:
Sorry, something went wrong.
Successfully merging a pull request may close this issue.
The text was updated successfully, but these errors were encountered: