gatsby-source-strapi
gatsby-source-strapi copied to clipboard
Cut a new alpha release after bumping axios to 0.21.1?
Hello maintainers,
I've been leveraging "gatsby-source-strapi": "^1.0.0-alpha.0" for a few months now.
npm install --save gatsby-source-strapi@alpha installs the above version that doesn't address the vulnerable axios version.
can you bump / cut a new alpha release to address the advisory?
https://www.npmjs.com/advisories/1594
Please advise
+1
I am also affected by this issue.
Please let me know if I can help out in any way! :)
Hey there, is there any update on this issue? It still seems to be affecting me.
Thanks!
We still waiting for this :(
👀
@collinwu this is fixed in the last alpha version https://github.com/strapi/gatsby-source-strapi/compare/v1.0.0-alpha.0...v1.0.0-alpha.1#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519R45
Thanks for your interest in this project. This plugin is moving into the Gatsby User Collective and this repo will be archived. Please open an issue in that repository, submit a PR if you'd like to see this implemented, or join us on Discord if you have questions!