add-typescript-to-cypress icon indicating copy to clipboard operation
add-typescript-to-cypress copied to clipboard

shelljs dependancy high vulnerability reported by npm audit

Open swannypp opened this issue 3 years ago • 1 comments

Thank you for taking time to open a new issue. Please answer a few questions to help us fix it faster. You can delete text that is irrelevant to the issue.

Is this a bug report or a feature request?

If this is a bug report, please provide as much info as possible

  • version
  • platform
  • expected behavior
  • actual behavior

If this is a new feature request, please describe it below npm audit is notifying of a high vulnerability with shelljs. Looking at the diff, it looks like a relatively straight forward change to bump the version of shelljs from 0.8.3 to 0.8.5 in package.json

swannypp avatar Feb 03 '22 05:02 swannypp

While in there - [email protected] is also flagging a high vulnerability Needs to goto 5.1.2

redevill avatar Apr 12 '22 16:04 redevill