oas-kit icon indicating copy to clipboard operation
oas-kit copied to clipboard

While upgrading swagger2openapi module with latest version @7.0.8, dependency module node-fetch is not updated to latest version

Open SaitejaChavva opened this issue 3 years ago • 3 comments

While upgrading typescript-rest-swagger module with latest version @1.1.7, internal dependency swagger2openapi module also upgraded to its latest version @7.0.8, but dependency module node-fetch is not updated to latest version

As per npm, node fetch latest version is 3.2.0, but while upgrading swagger2openapi with latest version, node-fetch version taken as @2.6.7. Due to this reason, we are facing security issues.

Please find below attached snapshot for the issue, issue was notified on JFROG image

Kindly update on the above issue, whether node-fetch dependency of the swagger2openapi module will be upgraded.

SaitejaChavva avatar Feb 03 '22 09:02 SaitejaChavva

Hi,

Any update/suggestions on mentioned request? Please do the needful ASAP

SaitejaChavva avatar Feb 22 '22 13:02 SaitejaChavva

Hi,

Is there any suggestions on mentioned request? Kindly let us know

SaitejaChavva avatar Mar 11 '22 13:03 SaitejaChavva

Hi,

I am also getting the same security issue. Could you please update it. @SaitejaChavva do you have any updates on it?

vikasjagdale92 avatar Jul 12 '23 06:07 vikasjagdale92