lodash-webpack-plugin
lodash-webpack-plugin copied to clipboard
Update package.json
older version of babel and lodash has injection vulnerability. An attacker can inject malicious code via sourceURL since it is not sanitized for the user-provided code that leads to the eval() function.
Thank you for your submission, we really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
Hi @RamyaPayyavula!
See #171 😃