-
Notifications
You must be signed in to change notification settings - Fork 105
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Minimist vulnerability CVE-2021-44906 #195
Comments
|
this issue is already fixed by #197 |
I am waiting on the the [email protected] dependency to be updated. As the original comment says, the latest json5 version is v2.2.1 If there is a work-around please do let me know. |
@F3n67u it seems that the issue did not actually got fixed by #197 |
Please bump
tsconfig-paths
dependencies.minimist <=v1.2.5
brings in security vulnerability which affect all packages that depends ontsconfig-paths
, including thejson5
package also used in this package.json5
already addresses thisminimist
issue in their latest version v2.2.1.As for
minimist
it self, based on discussion here a migration to an alternative package or other up-to-date fork maybe needed.The text was updated successfully, but these errors were encountered: