We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
request-promise adds old version (3.10.1 ) of lodash as a transitive dependency which has a CRITICAL CVE-2019-10744
request-promise
lodash
Dependency Tree:
. . |─ [email protected] │ |── [email protected] │ |─┬ [email protected] │ │ |── [email protected] │ │ └── [email protected] │ |── [email protected] │ └── [email protected] . .
Also, there are some HIGH CVEs as well.
The text was updated successfully, but these errors were encountered:
Successfully merging a pull request may close this issue.
request-promise
adds old version (3.10.1 ) oflodash
as a transitive dependency which has a CRITICAL CVE-2019-10744Dependency Tree:
Also, there are some HIGH CVEs as well.
The text was updated successfully, but these errors were encountered: