gatsby-source-strapi icon indicating copy to clipboard operation
gatsby-source-strapi copied to clipboard

Cut a new alpha release after bumping axios to 0.21.1?

Open collinwu opened this issue 4 years ago • 6 comments

Hello maintainers,

I've been leveraging "gatsby-source-strapi": "^1.0.0-alpha.0" for a few months now.

npm install --save gatsby-source-strapi@alpha installs the above version that doesn't address the vulnerable axios version.

can you bump / cut a new alpha release to address the advisory?

https://www.npmjs.com/advisories/1594

Please advise

collinwu avatar Feb 12 '21 20:02 collinwu

+1

jdortegar avatar Feb 12 '21 21:02 jdortegar

I am also affected by this issue.

Please let me know if I can help out in any way! :)

mrmikardo avatar Feb 14 '21 11:02 mrmikardo

Hey there, is there any update on this issue? It still seems to be affecting me.

Thanks!

mrmikardo avatar Mar 15 '21 22:03 mrmikardo

We still waiting for this :(

jdortegar avatar Mar 16 '21 19:03 jdortegar

👀

collinwu avatar Mar 16 '21 20:03 collinwu

@collinwu this is fixed in the last alpha version https://github.com/strapi/gatsby-source-strapi/compare/v1.0.0-alpha.0...v1.0.0-alpha.1#diff-7ae45ad102eab3b6d7e7896acd08c427a9b25b346470d7bc6507b6481575d519R45

jdortegar avatar Apr 20 '21 22:04 jdortegar

Thanks for your interest in this project. This plugin is moving into the Gatsby User Collective and this repo will be archived. Please open an issue in that repository, submit a PR if you'd like to see this implemented, or join us on Discord if you have questions!

moonmeister avatar Dec 27 '22 18:12 moonmeister