bibtexParseJs icon indicating copy to clipboard operation
bibtexParseJs copied to clipboard

Severly outdated dependency on "ada"

Open axkibe opened this issue 1 year ago • 1 comments

I get several warnings from npm audit, all because of bibtex-parse-js using a very old version of ava. (which in turn uses other packages with serious security risks).

uses 0.15.2, current 4.3.3

-> Please update/upgrade your dependencies.

Note that npm install/upgrade will only update minor versions by itself not major.

Audit issues for ava are: 0.6.0 - 2.4.0

axkibe avatar Sep 05 '22 08:09 axkibe