-
Notifications
You must be signed in to change notification settings - Fork 3.5k
CVE-2020-15168 found in [email protected] #504
Comments
we have same issue with [email protected] |
facebook/docusaurus also has this vulnerability for the same reason. Bumping |
Appreciated if this is fixed. |
Hej, I saw the release number is still 3.1.3 but that was nearly 3 years ago. Any plan for a minor release please? |
Yeah we'll try to make a release this week. |
any update on this issue? will you be able to make a release soon? Thanks Janet |
It has been released |
@yangshun how about this: facebook/fbjs#412 |
@yangshun
I was thinking the whole point of this issue was to make node-fetch >= 2.6.1 |
We need fbemitter to upgrade the fbjs version it uses but it has already been archived. I'll see what I can do internally to maybe upgrade |
@yangshun Thanks for investigating on it |
I got Should be fine now! |
@yangshun thanks so much. I will sync up with my team the next working day. |
CVE-2020-15168 found in [email protected]
CVE-2020-15168 is fixed in "node-fetch": "^2.6.1"
Is there a chance to update it in flux?
+-- [email protected]
| +-- [email protected]
| |
-- [email protected] deduped |
-- [email protected]| +-- [email protected]
| +-- [email protected]
| | +-- [email protected]
The text was updated successfully, but these errors were encountered: