Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security] Updating dependencies to resolve security issues #34

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

devinmatte
Copy link

@devinmatte devinmatte commented May 30, 2023

@zumwald Updates dependencies to resolve yarn audit security issues

fixes #19

Before

38 vulnerabilities found - Packages audited: 169
Severity: 3 Low | 11 Moderate | 16 High | 8 Critical

After

3 vulnerabilities found - Packages audited: 149
Severity: 3 Critical

The only remaining vulnerabilities are ones from sub-dependencies that don't have a release that resolves them. I have opened a PR as well on AceMetrix/npm-license#20 to hopefully resolve that

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Update dependencies to fix vulnverabilities introduced by debug and deep-extend
1 participant