js-table-cell-selector icon indicating copy to clipboard operation
js-table-cell-selector copied to clipboard

Dependabot cannot update loader-utils to a non-vulnerable version - severity CRITICAL

Open bastava-maryna opened this issue 9 months ago • 0 comments

The latest possible version that can be installed is 0.2.17 because of the following conflicting dependencies: [email protected] requires loader-utils@^0.2.16 via [email protected] [email protected] requires loader-utils@^2.0.0 via [email protected] No patched version available for loader-utils

The earliest fixed version is 1.4.2.

in loader-utils: Prototype pollution vulnerability in function parseQuery in parseQuery.js in webpack loader-utils prior to version 2.0.3 via the name variable in parseQuery.js.

bastava-maryna avatar May 23 '24 07:05 bastava-maryna