gatsby-plugin-favicon icon indicating copy to clipboard operation
gatsby-plugin-favicon copied to clipboard

NPM audit reports high vulnerability coming from to-ico package in favicon.

Open lucaskjaero opened this issue 4 years ago • 0 comments

Hi! In your favicon dependency, NPM audit shows that the dependency to-ico is vulnerable to CVE-2020-7661, which is rated as a high severity vulnerability. I've raised this issue with that team and wanted to provide an issue here for linking.

https://github.com/itgalaxy/favicons/issues/322

lucaskjaero avatar Oct 08 '20 20:10 lucaskjaero